Cisco Small Business Spa500 Series Ip Phones vulnerabilities
2 known vulnerabilities affecting cisco/cisco_small_business_spa500_series_ip_phones.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2018-0389HIGHCVSS 7.5≥ unspecified, ≤ 7.6.2SR22019-03-13
CVE-2018-0389 [HIGH] CWE-399 CVE-2018-0389: A vulnerability in the implementation of Session Initiation Protocol (SIP) processing in Cisco Small
A vulnerability in the implementation of Session Initiation Protocol (SIP) processing in Cisco Small Business SPA514G IP Phones could allow an unauthenticated, remote attacker to cause an affected device to become unresponsive, resulting in a denial of service (DoS) condition. The vulnerability is due to improper processing of SIP request messages by an
cvelistv5nvd
CVE-2019-1683HIGHCVSS 7.4v1.4.22019-02-25
CVE-2019-1683 [HIGH] CWE-295 CVE-2019-1683: A vulnerability in the certificate handling component of the Cisco SPA112, SPA525, and SPA5X5 Series
A vulnerability in the certificate handling component of the Cisco SPA112, SPA525, and SPA5X5 Series IP Phones could allow an unauthenticated, remote attacker to listen to or control some aspects of a Transport Level Security (TLS)-encrypted Session Initiation Protocol (SIP) conversation. The vulnerability is due to the improper validation of server cer
cvelistv5nvd