Vulnerabilities > Advantage Century Telecommunication

DATE CVE VULNERABILITY TITLE RISK
2006-01-22 CVE-2006-0375 Remote vulnerability in Advantage Century Telecommunication P202S 1.01.21Firmware1.1.21
Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 on VxWorks uses a hardcoded Network Time Protocol (NTP) server in Taiwan, which could allow remote attackers to provide false time information, block access to time information, or conduct other attacks.
network
low complexity
advantage-century-telecommunication
5.0
2006-01-22 CVE-2006-0374 Improper Authentication vulnerability in Advantage Century Telecommunication P202S 1.01.21Firmware1.1.21
Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 has multiple undocumented ports available, which (1) might allow remote attackers to obtain sensitive information, such as memory contents and internal operating-system data, by directly accessing the VxWorks WDB remote debugging ONCRPC (aka wdbrpc) on UDP 17185, (2) reflect network data using echo (TCP 7), or (3) gain access without authentication using rlogin (TCP 513).
7.5