Snom IP Phones Multiple Security Vulnerabilities
BID:72016
Info
Snom IP Phones Multiple Security Vulnerabilities
| Bugtraq ID: | 72016 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 13 2015 12:00AM |
| Updated: | Jan 13 2015 12:00AM |
| Credit: | SEC Consult Vulnerability Lab |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Snom IP Phones Multiple Security Vulnerabilities
Snom IP Phone are prone to the following multiple security vulnerabilities:
1. Multiple cross-site scripting vulnerabilities
2. An HTML-injection vulnerability
3. A directory traversal vulnerability
4. A command execution vulnerability
5. An authentication bypass vulnerability
6. Multiple cross-site request-forgery vulnerabilities
7. A privilege escalation vulnerability
8. An information-disclosure vulnerability
An attacker may leverage these issues to obtain potentially sensitive information, steal cookie based authentication credentials, perform unauthorized action with escalated privileges, bypass authentication mechanism, execute arbitrary commands, use directory-traversal characters ('../') to access or read arbitrary files that contain sensitive information or to access files outside of the restricted directory , and to execute arbitrary HTML and script in the browser of an unsuspecting user in the context of the affected site.
Snom IP Phone firmware versions prior to 8.7.5.15 are vulnerable.
Snom IP Phone are prone to the following multiple security vulnerabilities:
1. Multiple cross-site scripting vulnerabilities
2. An HTML-injection vulnerability
3. A directory traversal vulnerability
4. A command execution vulnerability
5. An authentication bypass vulnerability
6. Multiple cross-site request-forgery vulnerabilities
7. A privilege escalation vulnerability
8. An information-disclosure vulnerability
An attacker may leverage these issues to obtain potentially sensitive information, steal cookie based authentication credentials, perform unauthorized action with escalated privileges, bypass authentication mechanism, execute arbitrary commands, use directory-traversal characters ('../') to access or read arbitrary files that contain sensitive information or to access files outside of the restricted directory , and to execute arbitrary HTML and script in the browser of an unsuspecting user in the context of the affected site.
Snom IP Phone firmware versions prior to 8.7.5.15 are vulnerable.
Exploit / POC
Snom IP Phones Multiple Security Vulnerabilities
An attacker can exploit these issue using readily available commands and tools.
An attacker can exploit these issue using readily available commands and tools.
Solution / Fix
Snom IP Phones Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Snom IP Phones Multiple Security Vulnerabilities
References:
References:
- snom technology Homepage (snom technology AG)