5.3
CVSSv3

CVE-2017-6630

Published: 22/05/2017 Updated: 03/10/2019
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

A vulnerability in the Session Initiation Protocol (SIP) implementation of Cisco IP Phone 8851 11.0(0.1) could allow an unauthenticated, remote malicious user to cause a denial of service (DoS) condition. The vulnerability is due to an abnormal SIP message. An attacker could exploit this vulnerability by manipulating the CANCEL packet. An exploit could allow the malicious user to cause a disruption of service to the phone. Cisco Bug IDs: CSCvc34795.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ip_phone_8800_series_firmware 11.0\\(0.1\\)

Vendor Advisories

A vulnerability in the Session Initiation Protocol (SIP) implementation of Cisco IP Phone 8851 could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition The vulnerability is due to an abnormal SIP message An attacker could exploit this vulnerability by manipulating the CANCEL packet An exploit could allow the ...