cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2015-4226,https://securityvulnerability.io/vulnerability/CVE-2015-4226,,"The packet-storing feature on Cisco 9900 phones with firmware 9.3(2) does not properly support the RTP protocol, which allows remote attackers to cause a denial of service (device hang) by sending malformed RTP packets after a call is answered, aka Bug ID CSCur39976.",Cisco,Unified Ip Phones 9900 Series Firmware,,,0.003280000062659383,false,,false,false,false,,,false,false,,2015-06-30T15:00:00.000Z,0 CVE-2015-0600,https://securityvulnerability.io/vulnerability/CVE-2015-0600,,"The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to cause a denial of service (logoff) via crafted packets, aka Bug ID CSCuq12139.",Cisco,Unified Ip Phones 9900 Series Firmware,,,0.004879999905824661,false,,false,false,false,,,false,false,,2015-02-07T15:00:00.000Z,0 CVE-2015-0602,https://securityvulnerability.io/vulnerability/CVE-2015-0602,,"The mobility extension on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to obtain sensitive information by sniffing the network, aka Bug ID CSCuq12117.",Cisco,Unified Ip Phones 9900 Series Firmware,,,0.0031799999997019768,false,,false,false,false,,,false,false,,2015-02-07T15:00:00.000Z,0 CVE-2015-0604,https://securityvulnerability.io/vulnerability/CVE-2015-0604,,"The web framework on Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allows remote attackers to upload files to arbitrary locations on a phone's filesystem via crafted HTTP requests, aka Bug ID CSCup90424.",Cisco,Unified Ip Phones 9971 Firmware,,,0.0019199999514967203,false,,false,false,false,,,false,false,,2015-02-07T02:00:00.000Z,0 CVE-2015-0601,https://securityvulnerability.io/vulnerability/CVE-2015-0601,,"Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier allow local users to cause a denial of service (device reload) via crafted commands, aka Bug ID CSCup92790.",Cisco,Unified Ip Phones 9971 Firmware,,,0.0004199999966658652,false,,false,false,false,,,false,false,,2015-02-07T02:00:00.000Z,0 CVE-2015-0603,https://securityvulnerability.io/vulnerability/CVE-2015-0603,,"Cisco Unified IP 9900 phones with firmware 9.4(.1) and earlier use weak permissions for unspecified files, which allows local users to cause a denial of service (persistent hang or reboot) by writing to a phone's filesystem, aka Bug ID CSCup90474.",Cisco,Unified Ip Phones 9900 Series Firmware,,,0.0004199999966658652,false,,false,false,false,,,false,false,,2015-02-07T02:00:00.000Z,0 CVE-2014-0658,https://securityvulnerability.io/vulnerability/CVE-2014-0658,,"Cisco 9900 Unified IP phones allow remote attackers to cause a denial of service (unregistration) via a crafted SIP header, aka Bug ID CSCul24898.",Cisco,"Unified Ip Phones 9900 Series Firmware,Unified Ip Phone 9951,Unified Ip Phone 9971",,,0.011669999919831753,false,,false,false,false,,,false,false,,2014-01-10T16:00:00.000Z,0 CVE-2013-6685,https://securityvulnerability.io/vulnerability/CVE-2013-6685,,"The firmware on Cisco Unified IP phones 8961, 9951, and 9971 uses weak permissions for memory block devices, which allows local users to gain privileges by mounting a device with a setuid file in its filesystem, aka Bug ID CSCui04382.",Cisco,"Unified Ip Phone Firmware,Unified Ip Phone 8961,Unified Ip Phone 9951,Unified Ip Phone 9971",,,0.0024500000290572643,false,,false,false,false,,,false,false,,2013-11-13T15:55:00.000Z,0 CVE-2013-5532,https://securityvulnerability.io/vulnerability/CVE-2013-5532,,"Buffer overflow in the web-application interface on Cisco 9900 IP phones allows remote attackers to cause a denial of service (webapp interface outage) via long values in unspecified fields, aka Bug ID CSCuh10343.",Cisco,"Unified Ip Phones 9900 Series Firmware,Unified Ip Phone 9951,Unified Ip Phone 9971",,,0.0034099998883903027,false,,false,false,false,,,false,false,,2013-10-11T03:54:00.000Z,0 CVE-2013-5533,https://securityvulnerability.io/vulnerability/CVE-2013-5533,,"The image-upgrade functionality on Cisco 9900 Unified IP phones allows local users to gain privileges by placing shell commands in an unspecified parameter, aka Bug ID CSCuh10334.",Cisco,"Unified Ip Phones 9900 Series Firmware,Unified Ip Phone 9951,Unified Ip Phone 9971",,,0.0004199999966658652,false,,false,false,false,,,false,false,,2013-10-11T03:54:00.000Z,0 CVE-2013-3468,https://securityvulnerability.io/vulnerability/CVE-2013-3468,,"The Cisco Unified IP Phone 8945 with software 9.3(2) allows remote attackers to cause a denial of service (device hang) via a malformed PNG file, aka Bug ID CSCud04270.",Cisco,"Unified Ip Phone Firmware,Unified Ip Phone 8945",,,0.002589999930933118,false,,false,false,false,,,false,false,,2013-08-29T10:00:00.000Z,0 CVE-2013-3426,https://securityvulnerability.io/vulnerability/CVE-2013-3426,,"The Serviceability servlet on Cisco 9900 IP phones does not properly restrict paths, which allows remote attackers to read arbitrary files by specifying a pathname in a file request, aka Bug ID CSCuh52810.",Cisco,"Unified Ip Phones 9900 Series Firmware,Unified Ip Phone 9951,Unified Ip Phone 9971",,,0.0024800000246614218,false,,false,false,false,,,false,false,,2013-07-18T12:51:00.000Z,0 CVE-2012-1328,https://securityvulnerability.io/vulnerability/CVE-2012-1328,,"Cisco Unified IP Phones 9900 series devices with firmware 9.1 and 9.2 do not properly handle downloads of configuration information to an RT phone, which allows local users to gain privileges via unspecified injected data, aka Bug ID CSCts32237.",Cisco,"Unified Ip Phone Firmware,Unified Ip Phone",,,0.0004199999966658652,false,,false,false,false,,,false,false,,2012-05-03T23:55:00.000Z,0 CVE-2007-1072,https://securityvulnerability.io/vulnerability/CVE-2007-1072,,"The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063.",Cisco,Unified Ip Phone Firmware 7906g,,,0.0004199999966658652,false,,false,false,false,,,false,false,,2007-02-22T22:00:00.000Z,0 CVE-2007-1063,https://securityvulnerability.io/vulnerability/CVE-2007-1063,,"The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.",Cisco,Unified Ip Phone Firmware 7906g,,,0.022929999977350235,false,,false,false,false,,,false,false,,2007-02-22T01:00:00.000Z,0