vendor:
PhonerLite
by:
Jason Ostrom
8,8
CVSS
HIGH
Information Disclosure
200
CWE
Product Name: PhonerLite
Affected Version From: 2.14
Affected Version To: 2.14
Patch Exists: YES
Related CWE: CVE-2014-2560, CVE-2009-5139, CVE-2009-5140
CPE: a:phonerlite:phonerlite
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2014
SIP Digest Leak Information Disclosure in PhonerLite 2.14 SIP Soft Phone
PhonerLite SIP soft phone version 2.14 is vulnerable to revealing SIP MD5 digest authenticated user credential hash via spoofed SIP INVITE message sent by a malicious 3rd party. After responding back to an authentication challenge to the BYE message, PhonerLite leaks the hashed MD5 digest credentials. After the 3rd party receives the dumped MD5 hash, they can use this information to mount an offline wordlist attack.
Mitigation:
The vendor has released a new version of the PhonerLite soft phone, version 2.15, which is not vulnerable to this issue.