Lucene search

K
ciscoCiscoCISCO-SA-20151209-IPP
HistoryDec 09, 2015 - 12:00 a.m.

Multiple Cisco IP Phones Firmware Image Upload Vulnerability

2015-12-0900:00:00
tools.cisco.com
13

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%

A vulnerability in the TFTP implementation of the Cisco Small Business SPA30X and SPA50X IP Phones could allow an unauthenticated, local attacker to load arbitrary firmware images onto the affected device.

The vulnerability is due to insufficient file integrity checks of the firmware image. An attacker could exploit this vulnerability by gaining access to the local shell of the device and loading an arbitrary firmware image onto the device.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151209-ipp[“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151209-ipp”]

Affected configurations

Vulners
Node
ciscospa500_series_ip_phones_firmwareMatchany
OR
ciscodx_series_ip_phones_firmwareMatchany
OR
ciscospa500_series_ip_phones_firmwareMatchany
OR
ciscodx_series_ip_phones_firmwareMatchany
VendorProductVersionCPE
ciscospa500_series_ip_phones_firmwareanycpe:2.3:o:cisco:spa500_series_ip_phones_firmware:any:*:*:*:*:*:*:*
ciscodx_series_ip_phones_firmwareanycpe:2.3:o:cisco:dx_series_ip_phones_firmware:any:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

EPSS

0

Percentile

5.1%

Related for CISCO-SA-20151209-IPP