CVE Vulnerabilities

CVE-2005-3721

Published: Nov 21, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The default configuration of the HTTP server in Hitachi IP5000 VOIP WIFI Phone 1.5.6 does not require authentication for sensitive configuration pages, which allows remote attackers to modify configuration.

Affected Software

NameVendorStart VersionEnd Version
Ip5000_voip_wifi_phoneHitachi1.5.0 (including)1.5.0 (including)
Ip5000_voip_wifi_phoneHitachi1.5.2 (including)1.5.2 (including)
Ip5000_voip_wifi_phoneHitachi1.5.4 (including)1.5.4 (including)
Ip5000_voip_wifi_phoneHitachi1.5.5 (including)1.5.5 (including)
Ip5000_voip_wifi_phoneHitachi1.5.6 (including)1.5.6 (including)
Ip5000_voip_wifi_phoneHitachi1.5.8 (including)1.5.8 (including)
Ip5000_voip_wifi_phoneHitachi1.5.10 (including)1.5.10 (including)

References