CVE Vulnerabilities

CVE-2002-0882

Published: Oct 04, 2002 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script.

Affected Software

Name Vendor Start Version End Version
Skinny_client_control_protocol_software Cisco 3.1 3.1
Voip_phone_cp-7940 Cisco 3.0 3.0
Voip_phone_cp-7940 Cisco 3.1 3.1
Skinny_client_control_protocol_software Cisco 3.0 3.0
Voip_phone_cp-7940 Cisco 3.2 3.2
Skinny_client_control_protocol_software Cisco 3.2 3.2

References