CVE-2019-1764
published 2019-03-22CVE-2019-1764: A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an…
PriorityP348high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
0.70%
49.1th percentile
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an authenticated user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user. This vulnerability affects Cisco IP Phone 8800 Series products running a SIP Software release prior to 11.0(5) for Wireless IP Phone 8821 and 8821-EX; and 12.5(1)SR1 for the IP Conference Phone 8832 and the rest of the IP Phone 8800 Series. Cisco IP Conference Phone 8831 is not affected.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_ip_conference_phone_8832_and_the_rest_of_the_ip_phone_8800_series | >= unspecified < 12.5(1)SR1 | 12.5(1)SR1 |
| cisco | cisco_wireless_ip_phone_8821_and_8821-ex | >= unspecified < 11.0(5) | 11.0(5) |
| cisco | ip_conference_phone_8832_firmware | < 12.5\(1\)sr1 | 12.5\(1\)sr1 |
| cisco | ip_phone_8800_firmware | < 12.5\(1\)sr1 | 12.5\(1\)sr1 |
| cisco | ip_phone_8800_series | — | — |
| cisco | ip_phone_8821-ex_firmware | < 11.0\(5\) | 11.0\(5\) |
| cisco | ip_phone_8821_firmware | < 11.0\(5\) | 11.0\(5\) |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_cisco8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
vendor_cisco·2019-03-20·CVSS 8.1
CVE-2019-1764 [HIGH] CWE-352 Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack.
The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an authenticated user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user.
Cisco has released software updates that address this vulnerability. There are no workarounds that add
Cisco
Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
vendor_cisco·CVSS 3.0
CVE-2019-1764 Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
CVE-2019-1764: Cisco IP Phone 8800 Series Cross-Site Request Forgery Vulnerability
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an authenticated user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user. Cisco has released software updates that address this vulnerability. There are no
CVSS:
GHSA
GHSA-5rh5-cr8c-qg7h: A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unau
ghsa_unreviewed·2022-05-13
CVE-2019-1764 [HIGH] CWE-352 GHSA-5rh5-cr8c-qg7h: A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unau
A vulnerability in the web-based management interface of Session Initiation Protocol (SIP) Software for Cisco IP Phone 8800 Series could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading an authenticated user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on a targeted device via a web browser and with the privileges of the user. This vulnerability affects Cisco IP Phone 8800 Series products running a SIP Software release prior to 11.0(5) for Wireless IP Phone 8821 and 8821-EX; and 12.5(1)SR1 for t
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-11717 Mozilla: Caret character improperly escaped in origins
bugzilla·2019-07-10·CVSS 5.3
CVE-2019-11717 [MEDIUM] CVE-2019-11717 Mozilla: Caret character improperly escaped in origins
CVE-2019-11717 Mozilla: Caret character improperly escaped in origins
A vulnerability exists where the caret ("^") character is improperly escaped constructing some URIs due to it being used as a separator, allowing for possible spoofing of origin attributes.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11717
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Tyson Smith
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1765 https://access.redhat.com/errata/RHSA-2019:1765
---
This issue has been addressed in t
Bugzilla
CVE-2019-11711 Mozilla: Script injection within domain through inner window reuse
bugzilla·2019-07-10·CVSS 8.8
CVE-2019-11711 [HIGH] CVE-2019-11711 Mozilla: Script injection within domain through inner window reuse
CVE-2019-11711 Mozilla: Script injection within domain through inner window reuse
When an inner window is reused, it does not consider the use of `document.domain` for cross-origin protections. If pages on different subdomains ever cooperatively use `document.domain`, then either page can abuse this to inject script into arbitrary pages on the other subdomain, even those that did not use `document.domain` to relax their origin security.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11711
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Boris Zbarsky
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue
Bugzilla
CVE-2019-11713 Mozilla: Use-after-free with HTTP/2 cached stream
bugzilla·2019-07-10·CVSS 9.8
CVE-2019-11713 [CRITICAL] CVE-2019-11713 Mozilla: Use-after-free with HTTP/2 cached stream
CVE-2019-11713 Mozilla: Use-after-free with HTTP/2 cached stream
A use-after-free vulnerability can occur in HTTP/2 when a cached HTTP/2 stream is closed while still in use, resulting in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11713
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Hanno Böck
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1765 https://access.redhat.com/errata/RHSA-2019:1765
---
This issue has been addressed in the following products:
Red Hat Enterpris
Bugzilla
CVE-2019-9811 Mozilla: Sandbox escape via installation of malicious language pack
bugzilla·2019-07-10·CVSS 8.3
CVE-2019-9811 [HIGH] CVE-2019-9811 Mozilla: Sandbox escape via installation of malicious language pack
CVE-2019-9811 Mozilla: Sandbox escape via installation of malicious language pack
As part of his winning Pwn2Own entry, Niklas Baumstark demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-9811
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Niklas Baumstark
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1765 https://access.redhat.com/errata/RHSA-2019:1765
---
This issu
Bugzilla
CVE-2019-11715 Mozilla: HTML parsing error can contribute to content XSS
bugzilla·2019-07-10·CVSS 6.1
CVE-2019-11715 [MEDIUM] CVE-2019-11715 Mozilla: HTML parsing error can contribute to content XSS
CVE-2019-11715 Mozilla: HTML parsing error can contribute to content XSS
Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and lead to XSS hazards on web sites in certain circumstances.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11715
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Linus Särud
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1765 https://access.redhat.com/errata/RHSA-2019:1765
---
This issue has been addressed in the followi
Bugzilla
CVE-2019-11712 Mozilla: Cross-origin POST requests can be made with NPAPI plugins by following 308 redirects
bugzilla·2019-07-10·CVSS 8.8
CVE-2019-11712 [HIGH] CVE-2019-11712 Mozilla: Cross-origin POST requests can be made with NPAPI plugins by following 308 redirects
CVE-2019-11712 Mozilla: Cross-origin POST requests can be made with NPAPI plugins by following 308 redirects
POST requests made by NPAPI plugins, such as Flash, that receive a status 308 redirect response can bypass CORS requirements. This can allow an attacker to perform Cross-Site Request Forgery (CSRF) attacks.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11712
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Gregory Smiley (Security Compass)
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2019:1765 https://ac
Bugzilla
CVE-2019-11709 Mozilla: Memory safety bugs fixed in Firefox 68 and Firefox ESR 60.8
bugzilla·2019-07-10·CVSS 9.8
CVE-2019-11709 [CRITICAL] CVE-2019-11709 Mozilla: Memory safety bugs fixed in Firefox 68 and Firefox ESR 60.8
CVE-2019-11709 Mozilla: Memory safety bugs fixed in Firefox 68 and Firefox ESR 60.8
Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code.
External Reference:
https://www.mozilla.org/en-US/security/advisories/mfsa2019-22/#CVE-2019-11709
Discussion:
Acknowledgments:
Name: the Mozilla project
Upstream: Andreea Pavel, Christian Holler, Honza Bambas, Jason Kratzer, Jeff Gilbert
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 8
Via RHSA-2019:1764 https://access.redhat.com/errata/RHSA-2019:1764
---
This issue has been addressed in the
2019-03-22
Published