AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-11639

HIGH · CVSS 8.1 EPSS 1.11%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-07-03 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-11639
Severity
HIGH
CVSS
8.1
EPSS
1.11%

Original NVD Description

Plaintext Storage of Passwords within Cookies in /var/www/xms/application/controllers/verifyLogin.php in the administrative console in Dialogic PowerMedia XMS before 3.5 SU2 allows remote attackers to access a user's password in cleartext.