HIGH
The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a crafted HTTP request
Published Feb 15, 2008
7.8
HIGHCVSS 2.0
EPSS 1.90%
Description
The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a crafted HTTP request.
Affected products
No data.
Configuration 1
AND
Running on/with
OR
- 7906g
- 7911g
- 7935
- 7936
- 7940
- 7940g
- 7941g
- 7960
- 7960g
- 7961g
- 7970g
- 7971g
- n/a
Configuration 2
AND
Running on/with
OR
- 7940
- 7940g
- 7960
- 7960g
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (7)
- http://secunia.com/advisories/28935 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.cisco.com/en/US/products/products_security_advisory09186a0080949c7a.shtml vendor-advisoryx_refsource_CISCOPatch
- http://www.securityfocus.com/bid/27774 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id?1019408 vdb-entryx_refsource_SECTRACK
- http://www.vupen.com/english/advisories/2008/0543 vdb-entryx_refsource_VUPEN
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-0537 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/40489 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/28935 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.cisco.com/en/US/products/products_security_advisory09186a0080949c7a.shtml | vendor-advisoryx_refsource_CISCOPatch | |
| http://www.securityfocus.com/bid/27774 | vdb-entryx_refsource_BID | |
| http://www.securitytracker.com/id?1019408 | vdb-entryx_refsource_SECTRACK | |
| http://www.vupen.com/english/advisories/2008/0543 | vdb-entryx_refsource_VUPEN | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2008-0537 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/40489 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner cisco
Published Feb 15, 2008
Updated Aug 7, 2024
Reserved Jan 31, 2008
Link CVE-2008-0527
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2008-0537 Assigner cisco
Published Feb 15, 2008
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2008-0537