Vulnerability CVE-2007-6190


Published: 2007-11-29   Modified: 2012-02-12

Description:
The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that specifies a Real-Time Transport Protocol (RTP) audio stream.

Type:

CWE-200

(Information Exposure)

CVSS2 => (AV:N/AC:M/Au:S/C:P/I:N/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
3.5/10
2.9/10
6.8/10
Exploit range
Attack complexity
Authentication
Remote
Medium
Single time
Confidentiality impact
Integrity impact
Availability impact
Partial
None
None
Affected software
Cisco -> Unified ip phone 

 References:
http://www.vupen.com/english/advisories/2007/4036
http://www.securityfocus.com/bid/26668
http://www.hack.lu/pres/hacklu07_Remote_wiretapping.pdf
http://www.cisco.com/en/US/products/products_security_response09186a0080903a6d.html
http://securitytracker.com/id?1019006
http://secunia.com/advisories/27829
http://osvdb.org/40874

Copyright 2024, cxsecurity.com

 

Back to Top