The Vonage Motorola Phone Adapter VT 2142-VD does not properly verify that a SIP INVITE message originated from a legitimate server, which allows remote attackers to send spoofed INVITE messages, as demonstrated by a flood of messages triggering a denial of service, and by phone calls with malicious content.
References
Configurations
History
21 Nov 2024, 00:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/38524 - | |
References | () http://osvdb.org/38525 - | |
References | () http://secunia.com/advisories/27380 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/26129 - | |
References | () http://www.sipera.com/index.php?action=resources%2Cthreat_advisory&tid=357 - | |
References | () http://www.sipera.com/index.php?action=resources%2Cthreat_advisory&tid=360 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/37416 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/37420 - |
Information
Published : 2007-11-01 16:46
Updated : 2024-11-21 00:38
NVD link : CVE-2007-5791
Mitre link : CVE-2007-5791
CVE.ORG link : CVE-2007-5791
JSON object : View
Products Affected
vonage
- motorola_phone_adapter_vt2142-vd
CWE
CWE-287
Improper Authentication