// For flags

CVE-2001-1425

 

Severity Score

7.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The challenge-response authentication of the EXPERT user for Alcatel Speed Touch running firmware KHDSAA.108 and KHDSAA.132 through KHDSAA.134 allows remote attackers to gain privileges by directly computing the response based on information that is provided by the device during login.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2001-04-10 CVE Published
  • 2005-03-22 CVE Reserved
  • 2024-02-27 EPSS Updated
  • 2024-08-08 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Alcatel
Search vendor "Alcatel"
Speed Touch Home
Search vendor "Alcatel" for product "Speed Touch Home"
khdsaa.108
Search vendor "Alcatel" for product "Speed Touch Home" and version "khdsaa.108"
-
Affected
Alcatel
Search vendor "Alcatel"
Speed Touch Home
Search vendor "Alcatel" for product "Speed Touch Home"
khdsaa.132
Search vendor "Alcatel" for product "Speed Touch Home" and version "khdsaa.132"
-
Affected
Alcatel
Search vendor "Alcatel"
Speed Touch Home
Search vendor "Alcatel" for product "Speed Touch Home"
khdsaa.133
Search vendor "Alcatel" for product "Speed Touch Home" and version "khdsaa.133"
-
Affected
Alcatel
Search vendor "Alcatel"
Speed Touch Home
Search vendor "Alcatel" for product "Speed Touch Home"
khdsaa.134
Search vendor "Alcatel" for product "Speed Touch Home" and version "khdsaa.134"
-
Affected