telephone software vulnerabilities
vulnerabilities.aspcode.net
Searching telephone software vulnerabilities
The web-based configuration interface for the C
configuration
|
interface
|
web-based
|
Cisco
|
ATA
|
The web-based configuration interface for the Cisco ATA 186 Analog Telephone Adaptor allows remote attackers to bypass authentication via an HTTP POST request with a single byte, which allows the attackers to (1) obtain the password from the login screen, or (2) reconfigure the adaptor by modifying certain request parameters.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in Jadu CMS allow remote attackers to inject arbitrary web script or HTML via the (1) forename, (2) surname, (3) reg_email, (4) email_conf, (5) company, (6) city, (7) postcode, or (8) telephone parameters to site/scripts/register.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Alcatel-Lucent IP-Touch Telephone running OmniP
Alcatel-Lucent
|
daisy-chained
|
Enterprise
|
attackers
|
Telephone
|
IP-Touch
|
default
|
systems
|
enables
|
OmniPCX
|
running
|
access
|
allows
|
switch
|
voice
|
later
|
which
|
VLAN
|
mini
|
gain
|
via
|
Alcatel-Lucent IP-Touch Telephone running OmniPCX Enterprise 7.0 and later enables the mini switch by default, which allows attackers to gain access to the voice VLAN via daisy-chained systems.
The Vonage VoIP Telephone Adapter has a default
administrative
|
administrator
|
attackers
|
Telephone
|
password
|
username
|
Adapter
|
default
|
remote
|
access
|
obtain
|
allows
|
Vonage
|
"user"
|
which
|
VoIP
|
has
|
The Vonage VoIP Telephone Adapter has a default administrator username "user" and password "user," which allows remote attackers to obtain administrative access.
Mail in Apple iPhone 1.1.1 allows remote user-a
iPhone
|
Apple
|
Mail
|
Mail in Apple iPhone 1.1.1 allows remote user-assisted attackers to force the iPhone user to make calls to arbitrary telephone numbers via a "tel:" link, which does not prompt the user before dialing the number.
Safari in Apple iPhone 1.1.1 allows remote user
iPhone
|
Safari
|
Apple
|
Safari in Apple iPhone 1.1.1 allows remote user-assisted attackers to trick the iPhone user into making calls to arbitrary telephone numbers via a crafted "tel:" link that causes iPhone to display a different number than the number that will be dialed.
Software vulnerabilities results 1 to 7 of 7
Page:
1