Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown
CVE-2018-0332
Disclosure Date: June 07, 2018 (last updated November 26, 2024)
A vulnerability in the Session Initiation Protocol (SIP) ingress packet processing of Cisco Unified IP Phone software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to a lack of flow-control mechanisms in the software. An attacker could exploit this vulnerability by sending high volumes of SIP INVITE traffic to the targeted device. Successful exploitation could allow the attacker to cause a disruption of services on the targeted IP phone. Cisco Bug IDs: CSCve10064, CSCve14617, CSCve14638, CSCve14683, CSCve20812, CSCve20926, CSCve20945.
0
Attacker Value
Unknown
CVE-2015-6360
Disclosure Date: April 21, 2016 (last updated November 25, 2024)
The encryption-processing feature in Cisco libSRTP before 1.5.3 allows remote attackers to cause a denial of service via crafted fields in SRTP packets, aka Bug ID CSCux00686.
0
Attacker Value
Unknown
CVE-2014-0658
Disclosure Date: January 10, 2014 (last updated October 05, 2023)
Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898.
0
Attacker Value
Unknown
CVE-2013-6685
Disclosure Date: November 13, 2013 (last updated October 05, 2023)
The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block devices, which allows local users to gain privileges by mounting a device with a setuid file in its filesystem, aka Bug ID CSCui04382.
0
Attacker Value
Unknown
CVE-2013-5533
Disclosure Date: October 11, 2013 (last updated October 05, 2023)
The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell commands in an unspecified parameter, aka Bug ID CSCuh10334.
0
Attacker Value
Unknown
CVE-2013-5532
Disclosure Date: October 11, 2013 (last updated October 05, 2023)
Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of service (webapp interface outage) via long values in unspecified fields, aka Bug ID CSCuh10343.
0
Attacker Value
Unknown
CVE-2013-3468
Disclosure Date: August 29, 2013 (last updated October 05, 2023)
The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka Bug ID CSCud04270.
0
Attacker Value
Unknown
CVE-2013-3426
Disclosure Date: July 18, 2013 (last updated October 05, 2023)
The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810.
0
Attacker Value
Unknown
CVE-2012-1328
Disclosure Date: May 03, 2012 (last updated October 04, 2023)
Cisco Unified IP Phones 9900 series devices with firmware 9.1 and 9.2 do not properly handle downloads of configuration information to an RT phone, which allows local users to gain privileges via unspecified injected data, aka Bug ID CSCts32237.
0
Attacker Value
Unknown
CVE-2007-1072
Disclosure Date: February 22, 2007 (last updated October 04, 2023)
The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063.
0