CVE-2024-20376 Information

Description

A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated remote attacker to cause an affected device to reload resulting in a DoS condition.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface of an affected device. A successful exploit could allow the attacker to cause the affected device to reload.

Reference

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ipphone-multi-vulns-cXAhCvS

Share on: