Vulnerability Name: | CVE-2007-1542 (CCN-33098) | ||||||||
Assigned: | 2007-03-20 | ||||||||
Published: | 2007-03-20 | ||||||||
Updated: | 2017-07-29 | ||||||||
Summary: | Unspecified vulnerability in the Cisco IP Phone 7940 and 7960 running firmware before POS8-6-0 allows remote attackers to cause a denial of service via the Remote-Party-ID sipURI field in a SIP INVITE request. Note: the provenance of this information is unknown; the details are obtained solely from third party information. | ||||||||
CVSS v3 Severity: | 7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.9 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:POC/RL:OF/RC:C)
6.1 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C/E:POC/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: Full-Disclosure Mailing List, Tue Mar 20 2007 - 03:28:30 CDT CISCO Phone 7940 DOS vulnerability Source: CCN Type: Full-Disclosure Mailing List, Tue Mar 20 2007 - 09:53:33 CDT Re: CISCO Phone 7940 DOS vulnerability Source: MITRE Type: CNA CVE-2007-1542 Source: CCN Type: SA24600 Cisco IP Phone 7940/7960 SIP INVITE Denial of Service Vulnerability Source: SECUNIA Type: UNKNOWN 24600 Source: CCN Type: SECTRACK ID: 1017797 Cisco 7940/7960 IP Phones Can Be Crashed With a SIP INVITE Message Source: CISCO Type: UNKNOWN 20070320 Cisco IP Phone 7940/7960 SIP INVITE Denial of Service Source: CCN Type: Cisco Support Web site Download Software Source: CCN Type: cisco-sr-20070320-sip Cisco Security Response to: Cisco IP Phone 7940/7960 SIP INVITE Denial of Service Source: CCN Type: OSVDB ID: 34312 Cisco IP Phone 7940/7960 Malformed SIP INVITE Request DoS Source: BID Type: UNKNOWN 23047 Source: CCN Type: BID-23047 Cisco 7940/7960 Phone SIP Invite Remote Denial of Service Vulnerability Source: SECTRACK Type: UNKNOWN 1017797 Source: VUPEN Type: UNKNOWN ADV-2007-1023 Source: XF Type: UNKNOWN cisco-ipphone-sip-invite-dos(33098) Source: XF Type: UNKNOWN cisco-ipphone-sip-invite-dos(33098) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |