Show filters
45 Total Results
Displaying 1-10 of 45
Sort by:
Attacker Value
Unknown
CVE-2012-1838
Disclosure Date: March 22, 2012 (last updated October 04, 2023)
The web management interface on the LG-Nortel ELO GS24M switch allows remote attackers to bypass authentication, and consequently obtain cleartext credential and configuration information, via a direct request to a configuration web page.
0
Attacker Value
Unknown
CVE-2008-6579
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Nortel Communication Server 1000 4.50.x allows remote attackers to obtain Web application structure via unknown vectors related to "web resources to phones and administrators."
0
Attacker Value
Unknown
CVE-2008-6576
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the "session limitation technique" in the FTP service on Nortel Communications Server 1000 (CS1K) 4.50.x, when running on VGMC or signaling nodes, allows remote attackers to cause a denial of service (resource exhaustion and failed updates) via unknown vectors that causes consumption of all available sessions.
0
Attacker Value
Unknown
CVE-2008-6577
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Nortel MG1000S, Signaling Server, and Call Server on the Communications Server 1000 (CS1K) 4.50.x contain multiple unspecified hard-coded accounts and passwords, which allows remote attackers to gain privileges.
0
Attacker Value
Unknown
CVE-2008-6578
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Nortel Communication Server 1000 4.50.x allow remote attackers to execute arbitrary commands to gain privileges, obtain sensitive information, or cause a denial of service via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-6564
Disclosure Date: March 31, 2009 (last updated October 04, 2023)
Nortel UNIStim protocol, as used in Communication Server 1000 and other products, uses predictable sequence numbers, which allows remote attackers to hijack sessions via sniffing or brute force attacks.
0
Attacker Value
Unknown
CVE-2008-5872
Disclosure Date: January 08, 2009 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in the UNIStim File Transfer Protocol (UFTP) processing in IP Client Manager (IPCM) in Nortel Multimedia Communication Server (MSC) 5100 3.0.13 allow remote attackers to cause a denial of service (device outage) via a UFTP message that has a negative block size or other crafted Connection Details values.
0
Attacker Value
Unknown
CVE-2008-5871
Disclosure Date: January 08, 2009 (last updated October 04, 2023)
Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the snoop command.
0
Attacker Value
Unknown
CVE-2008-4999
Disclosure Date: November 07, 2008 (last updated October 04, 2023)
Nortel Networks UNIStim IP Phone 0604DAS allows remote attackers to cause a denial of service (crash) via a long ping packet ("ping of death"). NOTE: this issue could not be reproduced by a third party, who tested it on 0604DAD. In addition, the original researcher was not able to reliably reproduce the issue.
0
Attacker Value
Unknown
CVE-2008-3157
Disclosure Date: July 11, 2008 (last updated October 04, 2023)
Nortel SIP Multimedia PC Client 4.x MCS5100 and MCS5200 does not limit the number of concurrent sessions, which allows attackers to cause a denial of service (resource consumption) via a large number of sessions.
0