Vulnerabilities > Avaya > IP Soft Phone

DATE CVE VULNERABILITY TITLE RISK
2009-02-14 CVE-2008-6141 Resource Management Errors vulnerability in Avaya IP Soft Phone 6.0/6.01.85
Unspecified vulnerability in Avaya IP Softphone 6.0 SP4 and 6.01.85 allows remote attackers to cause a denial of service (crash) via a large amount of H.323 data.
network
low complexity
avaya CWE-399
5.0
2007-09-19 CVE-2007-3286 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Avaya IP Soft Phone 5.2/6.0
Multiple buffer overflows in unspecified ActiveX controls in COM objects in Avaya IP Softphone R5.2 before SP3, and R6.0, allow remote attackers to execute arbitrary code via unspecified vectors.
network
avaya CWE-119
6.8
2005-03-14 CVE-2005-0506 Remote Security vulnerability in Avaya IP Office Phone Manager and IP Soft Phone
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames and passwords and impersonate other users via keys such as Avaya\IP400\Generic.
network
low complexity
avaya
5.0