1 results (0.002 seconds)
CVSS: 9.8EPSS: 7%CPEs: 10EXPL: 0

CVE-2019-1716 – Cisco IP Phone 7800 Series and 8800 Series Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2019-1716
22 Mar 2019 — A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 7800 Series and Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or execute arbitrary code. The vulnerability exists because the software improperly validates user-supplied input during user authentication. An attacker could exploit this vulnerability by connecting to an affected device using HTTP and supplying malicious... • https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190320-ip-phone-rce • CWE-20: Improper Input Validation •