VendorsCiscosession_initiation_protocol_%5C(sip%5C)_firmwareall versions
Vulnerabilities

Cisco Session Initiation Protocol (sip) Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2008-0528
Buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SIP firmware might allow remote attackers to execute arbitrary code via a SIP message with crafted MIME data.
Published 2008-02-15 · Modified
10.0EPSS 0.054
CVE-2008-0529
Buffer overflow in the telnet server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G running SCCP firmware might allow remote authenticated users to execute arbitrary code via a crafted command.
Published 2008-02-15 · Modified
10.0EPSS 0.054
CVE-2008-0530
Buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP and SIP firmware might allow remote attackers to execute arbitrary code via a crafted DNS response.
Published 2008-02-15 · Modified
10.0EPSS 0.054
CVE-2008-0531
Heap-based buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SIP firmware might allow remote SIP servers to execute arbitrary code via a crafted challenge/response message.
Published 2008-02-15 · Modified
9.3EPSS 0.029
CVE-2008-0526
Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a long ICMP echo request (ping) packet.
Published 2008-02-15 · Modified
7.8EPSS 0.019
CVE-2008-0527
The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a crafted HTTP request.
Published 2008-02-15 · Modified
7.8EPSS 0.019