Vulnerability CVE-2007-0431


Published: 2007-01-22   Modified: 2012-02-12

Description:
AVM Fritz!Box 7050, and possibly other product models, allows remote attackers to cause a denial of service (VoIP application crash) via a zero-length UDP packet to the SIP port (port 5060).

Type:

CWE-Other

CVSS2 => (AV:N/AC:L/Au:N/C:N/I:N/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.8/10
6.9/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
None
None
Complete
Affected software
AVM -> Fritzbox 

 References:
ftp://ftp.avm.de/fritz.box/fritzbox.fon_wlan_7050/firmware/info.txt
http://archives.neohapsis.com/archives/fulldisclosure/2007-01/0387.html
http://mazzoo.de/blog/2007/01/18#FritzBox_DoS
http://www.securityfocus.com/archive/1/457406/100/0/threaded
http://www.securityfocus.com/archive/1/457829/100/0/threaded
http://www.securityfocus.com/bid/22130
http://www.vupen.com/english/advisories/2007/0272
https://exchange.xforce.ibmcloud.com/vulnerabilities/31633

Copyright 2024, cxsecurity.com

 

Back to Top