AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2002-0670

HIGH · CVSS 7.5 EPSS 1.64%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2002-07-23 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2002-0670
Severity
HIGH
CVSS
7.5
EPSS
1.64%

Original NVD Description

The web interface for Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 uses Base64 encoded usernames and passwords for HTTP basic authentication, which allows remote attackers to steal and easily decode the passwords via sniffing.