An issue was discovered on SendQuick Entera and Avera devices before 2HF16. An attacker could request and download the SMS logs from an unauthenticated perspective.
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://niantech.io/blog/2017/02/05/vulns-multiple-vulns-in-sendquick-entera-avera-sms-gateway-appliances/ | third party advisory url repurposed |
http://www.securityfocus.com/bid/96031 | third party advisory vdb entry |