Vulnerabilities > CVE-2007-4553 - Remote Denial of Service vulnerability in Thomson ST 2030 SIP Phone 1

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
thomson
exploit available

Summary

The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a '/' (slash) instead of the required space following the SIP version number.

Vulnerable Configurations

Part Description Count
Hardware
Thomson
1

Exploit-Db

descriptionThomson SpeedTouch 2030 SIP Invite Message Remote Denial of Service Vulnerability. CVE-2007-4553. Dos exploit for hardware platform
idEDB-ID:30530
last seen2016-02-03
modified2007-08-27
published2007-08-27
reporterHumberto J. Abdelnur
sourcehttps://www.exploit-db.com/download/30530/
titleThomson SpeedTouch 2030 SIP Invite Message Remote Denial of Service Vulnerability