Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco VoIP Phone流量统计请求导致拒绝服务攻击漏洞
Vulnerability Description
VoIP Phone 7900系列是一款由CISCO公司开发的IP电话解决方案。 VoIP Phone 7900系列的Web接口对不正常请求处理存在漏洞,可导致远程攻击者进行拒绝服务攻击。 VoIP Phone 7900系列内置监听80口的WEB服务,此服务提供显示流统计的脚本页面,用户可以通过" target="_blank">http://www.example.com/StreamingStatistics?<stream> 形式访问,由于这些页面不需要验证就可以访问,任意攻击者可以提交一个比较高的
CVSS Information
N/A
Vulnerability Type
N/A