Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
BID:101495
Info
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
| Bugtraq ID: | 101495 |
| Class: | Design Error |
| CVE: |
CVE-2017-12260 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 18 2017 12:00AM |
| Updated: | Oct 18 2017 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Cisco Small Business SPA500 Series IP Phones 7.6.2 |
| Not Vulnerable: |
Cisco Small Business SPA500 Series IP Phones 7.6(2)SR2 |
Discussion
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones are prone to a denial-of-service vulnerability.
A remote attacker can exploit this issue to cause the web interface on a targeted system to become unresponsive, resulting in a denial-of-service condition.
This issue being tracked by Cisco Bug ID CSCvc63986.
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones are prone to a denial-of-service vulnerability.
A remote attacker can exploit this issue to cause the web interface on a targeted system to become unresponsive, resulting in a denial-of-service condition.
This issue being tracked by Cisco Bug ID CSCvc63986.
Exploit / POC
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
An attacker can exploit this issue using readily available tools.
An attacker can exploit this issue using readily available tools.
Solution / Fix
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones Denial of Service Vulnerability
References:
References: