CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cisco 3Unified Ip Phone 9951 Unified Ip Phone 9971Unified Ip Phones 9900 Series FirmwareApr 29, 2026 Jan 10, 2014 N/A· v4 N/A· v3 5.4 MEDIUM· v2 Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898. |
1Cisco 4Unified Ip Phone 8961 Unified Ip Phone 9951Unified Ip Phone 9971+1 moreApr 29, 2026 Nov 13, 2013 N/A· v4 N/A· v3 6.6 MEDIUM· v2 The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block devices, which allows local users to gain privileges by mounting a device with a setuid file in its filesystem, aka Bug...Show more |
1Cisco 3Unified Ip Phone 9951 Unified Ip Phone 9971Unified Ip Phones 9900 Series FirmwareApr 29, 2026 Oct 11, 2013 N/A· v4 N/A· v3 6.0 MEDIUM· v2 The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell commands in an unspecified parameter, aka Bug ID CSCuh10334. |
1Cisco 3Unified Ip Phone 9951 Unified Ip Phone 9971Unified Ip Phones 9900 Series FirmwareApr 29, 2026 Oct 11, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of service (webapp interface outage) via long values in unspecified fields, aka Bug ID CSCuh10343. |
1Cisco 2Unified Ip Phone 9951 Unified Ip Phone 9971Apr 29, 2026 Oct 10, 2013 N/A· v4 N/A· v3 7.1 HIGH· v2 Cisco 9900 fourth-generation IP phones do not properly perform SDP negotiation, which allows remote attackers to cause a denial of service (device reboot) via crafted SDP packets, aka Bug ID CSCuf06698. |
1Cisco 3Unified Ip Phone 9951 Unified Ip Phone 9971Unified Ip Phones 9900 Series FirmwareApr 29, 2026 Jul 18, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810. |