The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote malicious users to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco voip phone cp-7940 3.1 |
||
cisco voip phone cp-7940 3.2 |
||
cisco skinny client control protocol software 3.0 |
||
cisco skinny client control protocol software 3.1 |
||
cisco skinny client control protocol software 3.2 |
||
cisco voip phone cp-7940 3.0 |