Remote Information Leak in Cobham Sea Tel 121 Devices
CVE-2018-5266
7.5HIGH
What is CVE-2018-5266?
The Cobham Sea Tel 121 devices in build 222701 are susceptible to information leakage, allowing remote attackers to access potentially sensitive information. By exploiting a vulnerability in the js/userLogin.js URI, attackers can read the loginName lines, which reveal valid usernames. Additionally, the documentation for these devices lists default passwords associated with standard usernames, increasing the risk of unauthorized access.
