MEDIUM · 4.3

CVE-2008-1114

Vocera Communications wireless handsets, when using Protected Extensible Authentication Protocol (PEAP), do not validate server certificates, which allows remote wireless access points to steal hashed...

Vulnerability Description

Vocera Communications wireless handsets, when using Protected Extensible Authentication Protocol (PEAP), do not validate server certificates, which allows remote wireless access points to steal hashed passwords and conduct man-in-the-middle (MITM) attacks.

CVSS Score

4.3

MEDIUM

AV:N/AC:M/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
VoceraWireless Handset-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-1114?

CVE-2008-1114 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Vocera Communications wireless handsets, when using Protected Extensible Authentication Protocol (PEAP), do not validate server certificates, which allows remote wireless access points to steal hashed...

How severe is CVE-2008-1114?

CVE-2008-1114 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-1114?

Check the references section above for vendor advisories and patch information. Affected products include: Vocera Wireless Handset.