PT-2020-13: Insecure TRACE protocol

MEDIUM
(5.1) CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L

What are the security threats on your network?

Check your traffic-for free
Request pilot

Vulnerable software

Ingenico
Tellium 2

Severity level

Severity level: Medium
Impact: Insecure TRACE protocol
Access Vector: Remote

CVSS v3.1:
Base Score: 5.1
Vector: (AV:P/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L)

CVE-2018-17768

Advisory status

01.09.2018 - Vendor gets vulnerability details
01.03.2020 - Vendor releases fixed version and details

Credits

The vulnerability was detected by Dmitry Sklyarov, Alexey Stennikov, Vladimir Kononovich, Georgy Zaytsev, Maxim Kozhevnikov, Positive Research Center (Positive Technologies Company)

Identifier:
CVE-2018-17768
Vendor:
Ingenico
Vulnerable product:
Tellium 2

Get in touch

Fill in the form and our specialists
will contact you shortly