Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

Missing password verification in the web interface on Gigaset Maxwell Basic VoIP phones with firmware 2.22.7 would allow a remote attacker (in the same network as the device) to change the admin password without authentication (and without knowing the original password).

Updated:

This container includes required additional information provided by the CVE Program for this vulnerability.