Denial of Service Vulnerability in Cisco IP Phone 7940
CVE-2007-5583
Currently unrated
Key Information:
- Vendor
Cisco
- Status
- Vendor
- CVE Published:
- 18 December 2007
Badges
๐พ Exploit Exists๐ก Public PoC๐ฃ EPSS 30%
What is CVE-2007-5583?
A vulnerability in the Cisco IP Phone 7940 with firmware P0S3-08-7-00 allows remote attackers to trigger a denial of service condition. This occurs through a series of SIP INVITE transactions where the Request-URI does not contain a user name. When exploited, this can lead to the device returning '486 Busy' responses or cause the device to reboot unexpectedly, disrupting VoIP services.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.