CVE-2015-6403 Information

Description

The TFTP implementation on Cisco Small Business SPA30x SPA50x SPA51x phones 7.5.7 improperly validates firmware-image file integrity which allows local users to load a Trojan horse image by leveraging shell access aka Bug ID CSCut67400.

Reference

http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20151209-ipp http://www.securityfocus.com/bid/78739 http://www.securitytracker.com/id/1034376

Share on: