Page 2 of 8 results (0.002 seconds)

CVSS: 6.4EPSS: 1%CPEs: 6EXPL: 0

The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script. • http://online.securityfocus.com/archive/1/273673 http://www.cisco.com/warp/public/707/multiple-ip-phone-vulnerabilities-pub.shtml http://www.iss.net/security_center/static/9142.php http://www.iss.net/security_center/static/9143.php http://www.securityfocus.com/bid/4794 http://www.securityfocus.com/bid/4798 •

CVSS: 2.1EPSS: 0%CPEs: 6EXPL: 0

Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings. • http://online.securityfocus.com/archive/1/273673 http://www.cisco.com/warp/public/707/multiple-ip-phone-vulnerabilities-pub.shtml http://www.iss.net/security_center/static/9144.php http://www.securityfocus.com/bid/4799 •

CVSS: 5.0EPSS: 0%CPEs: 6EXPL: 0

Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated by (1) "jolt", (2) "jolt2", (3) "raped", (4) "hping2", (5) "bloop", (6) "bubonic", (7) "mutant", (8) "trash", and (9) "trash2." • http://www.cisco.com/warp/public/707/multiple-ip-phone-vulnerabilities-pub.shtml •