VYPR

Lighthouse Sms

by Tollgrade

CVEs (2)

  • CVE-2016-5807HigJul 15, 2016
    risk 0.53cvss 8.1epss 0.00

    Tollgrade LightHouse SMS before 5.1 patch 3 allows remote authenticated users to bypass an intended administrative-authentication requirement, and read or change parameter values, via a direct request.

  • CVE-2016-5797MedJul 15, 2016
    risk 0.34cvss 5.3epss 0.00

    Tollgrade LightHouse SMS before 5.1 patch 3 provides different error messages for failed authentication attempts depending on whether the username exists, which allows remote attackers to enumerate account names via a series of attempts.