4.6
CVSSv2

CVE-2002-0675

Published: 23/07/2002 Updated: 10/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 up to and including 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone.

Vulnerable Product Search on Vulmon Subscribe to Product

pingtel xpressa 1.2.7.4

pingtel xpressa 1.2.5