Vulnerabilities > Cisco > Unified IP Phones 9900 Series Firmware > 9.3.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-06-30 | CVE-2015-4226 | Resource Management Errors vulnerability in Cisco Unified IP Phones 9900 Series Firmware 9.3(2) The packet-storing feature on Cisco 9900 phones with firmware 9.3(2) does not properly support the RTP protocol, which allows remote attackers to cause a denial of service (device hang) by sending malformed RTP packets after a call is answered, aka Bug ID CSCur39976. | 7.1 |
2015-02-07 | CVE-2015-0602 | Information Exposure vulnerability in Cisco Unified IP Phones 9900 Series Firmware 9.3(2) The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to obtain sensitive information by sniffing the network, aka Bug ID CSCuq12117. | 5.0 |
2015-02-07 | CVE-2015-0600 | Improper Input Validation vulnerability in Cisco Unified IP Phones 9900 Series Firmware 9.3(2) The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to cause a denial of service (logoff) via crafted packets, aka Bug ID CSCuq12139. | 5.0 |
2015-02-07 | CVE-2015-0603 | Permissions, Privileges, and Access Controls vulnerability in Cisco Unified IP Phones 9900 Series Firmware 9.3(2) Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier use weak permissions for unspecified files, which allows local users to cause a denial of service (persistent hang or reboot) by writing to a phone's filesystem, aka Bug ID CSCup90474. | 4.6 |