VendorsCiscoip_phone_7832any version
Vulnerabilities

Cisco IP Phone 7832 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2023-20078
Cisco IP Phone 6800, 7800, 7900, and 8800 Series Web UI Vulnerabilities
Published 2023-03-03 · Modified
9.8EPSS 0.104
CVE-2023-20079
Cisco IP Phone 6800, 7800, 7900, and 8800 Series Web UI Vulnerabilities
Published 2023-03-03 · Modified
9.8EPSS 0.103
CVE-2022-20968
A vulnerability in the Cisco Discovery Protocol processing feature of Cisco IP Phone 7800 and 8800 Series firmware could allow an unauthenticated, adjacent attacker to cause a stack overflow on an affected device. This vulnerability is due to insufficient input validation of received Cisco Discovery Protocol packets. An attacker could exploit this vulnerability by sending crafted Cisco Discovery Protocol traffic to an affected device. A successful exploit could allow the attacker to cause a stack overflow, resulting in possible remote code execution or a denial of service (DoS) condition on an affected device.
Published 2022-12-08 · Modified
8.8EPSS 0.061
CVE-2023-20018
A vulnerability in the web-based management interface of Cisco IP Phone 7800 and 8800 Series Phones could allow an unauthenticated, remote attacker to bypass authentication on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to access certain parts of the web interface that would normally require authentication.
Published 2023-01-19 · Modified
8.6EPSS 0.006
CVE-2022-20774
Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware Cross-Site Request Forgery Vulnerability
Published 2022-04-06 · Modified
8.1EPSS 0.004
CVE-2024-20376
A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a DoS condition. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface of an affected device. A successful exploit could allow the attacker to cause the affected device to reload.
Published 2024-05-01 · Analyzed
7.5EPSS 0.009
CVE-2024-20357
A vulnerability in the XML service of Cisco IP Phone firmware could allow an unauthenticated, remote attacker to initiate phone calls on an affected device. This vulnerability exists because bounds-checking does not occur while parsing XML requests. An attacker could exploit this vulnerability by sending a crafted XML request to an affected device. A successful exploit could allow the attacker to initiate calls or play sounds on the device.
Published 2024-05-01 · Analyzed
5.9EPSS 0.005
CVE-2021-34711
Cisco IP Phone Software Arbitrary File Read Vulnerability
Published 2021-10-06 · Modified
5.5EPSS 0.003
CVE-2019-16008
Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware Cross-Site Scripting Vulnerability
Published 2020-01-26 · Modified
5.4EPSS 0.006
CVE-2024-20533
Cisco IP Phone 6800, 7800, 8800, and 9800 Series with Multiplatform Firmware Stored Cross-Site Scripting Vulnerabilities
Published 2024-11-06 · Analyzed
4.8EPSS 0.003
CVE-2024-20534
Cisco IP Phone 6800, 7800, 8800, and 9800 Series with Multiplatform Firmware Stored Cross-Site Scripting Vulnerability
Published 2024-11-06 · Analyzed
4.8EPSS 0.003