← Back

Skinny Client Control Protocol Software

skinny_client_control_protocol_software

Vendor: Cisco • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cisco
1Skinny Client Control Protocol Software
Nov 21, 2024
Oct 5, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
A vulnerability in the web-based management interface of Cisco Unified IP Phone 7900 Series could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based m...Show more
A vulnerability in the web-based management interface of Cisco Unified IP Phone 7900 Series could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user of the interface to click a malicious link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.Show less
1Cisco
3Skinny Client Control Protocol Software
Unified Ip PhoneUnified Ip Phone 7906g
Apr 29, 2026
Dec 28, 2012
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows attackers to execute...Show more
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a crafted binary.Show less
1Cisco
15Skinny Client Control Protocol Software
Unified Ip Phone 7906Unified Ip Phone 7911g+12 more
Apr 29, 2026
Jun 2, 2011
N/A· v4
N/A· v3
1.5 LOW· v2
Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 do not properly verify signatures for software images, which allows local users to gain privileges via a crafted image, aka Bug ID CSCtn659...Show more
Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 do not properly verify signatures for software images, which allows local users to gain privileges via a crafted image, aka Bug ID CSCtn65962.Show less
1Cisco
15Skinny Client Control Protocol Software
Unified Ip Phone 7906Unified Ip Phone 7911g+12 more
Apr 29, 2026
Jun 2, 2011
N/A· v4
N/A· v3
6.6 MEDIUM· v2
Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bug ID CSCtn65815.
1Cisco
15Skinny Client Control Protocol Software
Unified Ip Phone 7906Unified Ip Phone 7911g+12 more
Apr 29, 2026
Jun 2, 2011
N/A· v4
N/A· v3
6.6 MEDIUM· v2
The su utility on Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.0.3 allows local users to gain privileges via unspecified vectors, aka Bug ID CSCtf07426.
1Cisco
2Skinny Client Control Protocol Software
Voip Phone Cp 7940
Apr 16, 2026
Oct 4, 2002
N/A· v4
N/A· v3
6.4 MEDIUM· v2
The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the S...Show more
The web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read sensitive memory via a large integer value in (1) the stream ID of the StreamingStatistics script, or (2) the port ID of the PortInformation script.Show less
1Cisco
2Skinny Client Control Protocol Software
Voip Phone Cp 7940
Apr 16, 2026
Oct 4, 2002
N/A· v4
N/A· v3
2.1 LOW· v2
Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings.
1Cisco
2Skinny Client Control Protocol Software
Voip Phone Cp 7940
Apr 16, 2026
Oct 4, 2002
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated by (1) "jolt", (2) "jolt2", (3) "raped", (4) "hping2", (5) "bloop", (6)...Show more
Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated by (1) "jolt", (2) "jolt2", (3) "raped", (4) "hping2", (5) "bloop", (6) "bubonic", (7) "mutant", (8) "trash", and (9) "trash2."Show less