// For flags

CVE-2007-1063

 

Severity Score

10.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.

El servidor SSH en Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, y 7971G, con firmware 8.0(4)SR1 y anteriores, utiliza un nombre de usuario y contraseƱa fuertemente codificada, lo cual permite a atacantes remotos acceder al dispositivo.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-02-21 CVE Reserved
  • 2007-02-22 CVE Published
  • 2024-02-02 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-798: Use of Hard-coded Credentials
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7906g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7906g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7906g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7906g
Search vendor "Cisco" for product "Unified Ip Phone 7906g"
--
Safe
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7911g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7911g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7911g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7911g
Search vendor "Cisco" for product "Unified Ip Phone 7911g"
--
Safe
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7941g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7941g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7941g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7941g
Search vendor "Cisco" for product "Unified Ip Phone 7941g"
--
Safe
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7961g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7961g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7961g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7961g
Search vendor "Cisco" for product "Unified Ip Phone 7961g"
--
Safe
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7970g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7970g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7970g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7970g
Search vendor "Cisco" for product "Unified Ip Phone 7970g"
--
Safe
Cisco
Search vendor "Cisco"
Unified Ip Phone Firmware 7971g
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7971g"
8.0\(4\)
Search vendor "Cisco" for product "Unified Ip Phone Firmware 7971g" and version "8.0\(4\)"
sr1
Affected
in Cisco
Search vendor "Cisco"
Unified Ip Phone 7971g
Search vendor "Cisco" for product "Unified Ip Phone 7971g"
--
Safe