The web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers to make arbitrary phone calls via the "Call a number" field. NOTE: this might overlap CVE-2007-3440.
References
Configurations
Information
Published : 2008-03-10 10:44
Updated : 2018-10-11 13:31
NVD link : CVE-2008-1248
Mitre link : CVE-2008-1248
JSON object : View
CWE
CWE-352
Cross-Site Request Forgery (CSRF)
Products Affected
snom
- 320_sip_phone