Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.
2005-07-11T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:P/A:N
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | cisco | ip_phone_7940_firmware | - | Yes |
Hardware | cisco | ip_phone_7940 | - | No |
Operating System | cisco | ip_phone_7960_firmware | - | Yes |
Hardware | cisco | ip_phone_7960 | - | No |