← Back to CVE List

CVE-2019-17393

Published: 2019-10-18T17:15Z
Last Modified: 2024-11-21T04:32Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The Customer's Tomedo Server in Version 1.7.3 communicates to the Vendor Tomedo Server via HTTP (in cleartext) that can be sniffed by unauthorized actors. Basic authentication is used for the authentication, making it possible to base64 decode the sniffed credentials and discover the username and password. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt