CVE Vulnerabilities

CVE-2002-0675

Published: Jul 23, 2002 | Modified: Sep 10, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone.

Affected Software

Name Vendor Start Version End Version
Xpressa Pingtel 1.2.5 (including) 1.2.5 (including)
Xpressa Pingtel 1.2.7.4 (including) 1.2.7.4 (including)

References