// For flags

CVE-2019-19891

 

Severity Score

5.9
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

An encryption key vulnerability on Mitel SIP-DECT wireless devices 8.0 and 8.1 could allow an attacker to launch a man-in-the-middle attack. A successful exploit may allow the attacker to intercept sensitive information.

Una vulnerabilidad de clave de cifrado en los dispositivos inalámbricos Mitel SIP-DECT versión 8.0 y 8.1, podría permitir a un atacante activar un ataque de tipo man-in-the-middle. Una explotación con éxito puede permitir al atacante interceptar información confidencial.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
High
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-12-18 CVE Reserved
  • 2020-01-13 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-05 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-327: Use of a Broken or Risky Cryptographic Algorithm
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Mitel
Search vendor "Mitel"
Sip-dect Firmware
Search vendor "Mitel" for product "Sip-dect Firmware"
8.0
Search vendor "Mitel" for product "Sip-dect Firmware" and version "8.0"
-
Affected
in Mitel
Search vendor "Mitel"
Sip-dect
Search vendor "Mitel" for product "Sip-dect"
--
Safe
Mitel
Search vendor "Mitel"
Sip-dect Firmware
Search vendor "Mitel" for product "Sip-dect Firmware"
8.1
Search vendor "Mitel" for product "Sip-dect Firmware" and version "8.1"
-
Affected
in Mitel
Search vendor "Mitel"
Sip-dect
Search vendor "Mitel" for product "Sip-dect"
--
Safe