Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 do not properly verify signatures for software images, which allows local users to gain privileges via a crafted image, aka Bug ID CSCtn65962.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2011-06-02 13:55
Updated : 2017-08-16 18:34
NVD link : CVE-2011-1637
Mitre link : CVE-2011-1637
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
cisco
- unified_ip_phone_7962g
- unified_ip_phone_7965g
- unified_ip_phone_7945g
- unified_ip_phone_7911g
- unified_ip_phone_7961g
- unified_ip_phone_7970g
- unified_ip_phone_7942g
- unified_ip_phone_7941g-ge
- skinny_client_control_protocol_software
- unified_ip_phone_7931g
- unified_ip_phone_7975g
- unified_ip_phone_7971g-ge
- unified_ip_phone_7906
- unified_ip_phone_7941g
- unified_ip_phone_7961g-ge