cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2015-0670,https://securityvulnerability.io/vulnerability/CVE-2015-0670,,"The default configuration of Cisco Small Business IP phones SPA 300 7.5.5 and SPA 500 7.5.5 does not properly support authentication, which allows remote attackers to read audio-stream data or originate telephone calls via a crafted XML request, aka Bug ID CSCuo52482.",Cisco,"Spa500 Firmware,Spa 501g 8-line Ip Phone,Spa 502g 1-line Ip Phone,Spa 504g 4-line Ip Phone,Spa 508g 8-line Ip Phone,Spa 509g 12-line Ip Phone,Spa 512g 1-line Ip Phone,Spa 514g 4-line Ip Phone,Spa 525g 5-line Ip Phone,Spa 525g2 5-line Ip Phone",,,0.0034199999645352364,false,,false,false,false,,,false,false,,2015-03-21T01:00:00.000Z,0 CVE-2014-3312,https://securityvulnerability.io/vulnerability/CVE-2014-3312,,"The debug console interface on Cisco Small Business SPA300 and SPA500 phones does not properly perform authentication, which allows local users to execute arbitrary debug-shell commands, or read or modify data in memory or a filesystem, via direct access to this interface, aka Bug ID CSCun77435.",Cisco,"Spa 512g 1-line Ip Phone,Spa941 4-line Ip Phone With 1-port Ethernet,Spa 504g 4-line Ip Phone,Spa 525g 5-line Ip Phone,Spa 301 1 Line Ip Phone,Spa962 6-line Ip Phone With 2-port Switch,Spa942 4-line Ip Phone With 2-port Switch,Spa901 1-line Ip Phone,Spa 514g 4-line Ip Phone,Spa 508g 8-line Ip Phone,Spa922 1-line Ip Phone With 1-port Ethernet,Spa 502g 1-line Ip Phone,Spa 509g 12-line Ip Phone,Spa 525g2 5-line Ip Phone,Spa 501g 8-line Ip Phone,Spa 303 3 Line Ip Phone",,,0.0008699999889358878,false,,false,false,false,,,false,false,,2014-07-09T10:00:00.000Z,0 CVE-2014-3313,https://securityvulnerability.io/vulnerability/CVE-2014-3313,,"Cross-site scripting (XSS) vulnerability in the web user interface on Cisco Small Business SPA300 and SPA500 phones allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuo52582.",Cisco,"Spa 512g 1-line Ip Phone,Spa941 4-line Ip Phone With 1-port Ethernet,Spa 504g 4-line Ip Phone,Spa 525g 5-line Ip Phone,Spa 301 1 Line Ip Phone,Spa962 6-line Ip Phone With 2-port Switch,Spa942 4-line Ip Phone With 2-port Switch,Spa901 1-line Ip Phone,Spa 514g 4-line Ip Phone,Spa 508g 8-line Ip Phone,Spa922 1-line Ip Phone With 1-port Ethernet,Spa 502g 1-line Ip Phone,Spa 509g 12-line Ip Phone,Spa 525g2 5-line Ip Phone,Spa 501g 8-line Ip Phone,Spa 303 3 Line Ip Phone",,,0.00279000005684793,false,,false,false,false,,,false,false,,2014-07-09T10:00:00.000Z,0