4 results (0.005 seconds)

CVSS: 7.5EPSS: 75%CPEs: 6EXPL: 3

21 Aug 2007 — Cisco IP Phone 7940 and 7960 with P0S3-08-6-00 firmware, and other SIP firmware before 8.7(0), allows remote attackers to cause a denial of service (device reboot) via (1) a certain sequence of 10 invalid SIP INVITE and OPTIONS messages; or (2) a certain invalid SIP INVITE message that contains a remote tag, followed by a certain set of two related SIP OPTIONS messages. Cisco IP Phone 7940 y 7960 con versión de firmware P0S3-08-6-00, y otro SIP versiones de firmware anteriores a 8.7(0), permite a atacantes ... • https://www.exploit-db.com/exploits/4298 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 0%CPEs: 6EXPL: 0

31 Aug 2002 — Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated by (1) "jolt", (2) "jolt2", (3) "raped", (4) "hping2", (5) "bloop", (6) "bubonic", (7) "mutant", (8) "trash", and (9) "trash2." • http://www.cisco.com/warp/public/707/multiple-ip-phone-vulnerabilities-pub.shtml •

CVSS: 9.8EPSS: 0%CPEs: 6EXPL: 0

31 Aug 2002 — Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings. • http://online.securityfocus.com/archive/1/273673 •

CVSS: 7.5EPSS: 1%CPEs: 6EXPL: 0

31 Aug 2002 — The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script. • http://online.securityfocus.com/archive/1/273673 •