{"schema_version":"public-product-v1.1","generated_at":"2026-07-21T10:39:53Z","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","advisory":{"id":"Cisco-SA-20070821-CVE-2007-4459","slug":"cisco-sa-20070821-cve-2007-4459","vendor":"Cisco","title":"Cisco IP Phone Session Initiation Protocol Denial of Service Vulnerability","summary":"Cisco 7940 and 7960 IP Phones with firmware versions 8.6 and prior contain a vulnerability when handling a series of SIP messages that could allow an attacker on the Voice VLAN to cause the phone to fail and restart. This vulnerability exists due to insufficient handling of certain sets of malformed SIP messages that are sent to affected devices.&nbsp; An unauthenticated, remote attacker with access to the voice VLAN could exploit this vulnerability by sending a series of malicious SIP messages to an affected device.&nbsp; When a device processes these messages, the device may fail and restart.&nbsp; An exploit could result in a denial of service condition. Exploit code is available. Cisco confirmed this vulnerability, and updated software is available. To exploit this vulnerability, an attacker must have access to networks where the affected devices are located.&nbsp; Depending on site configuration, IP phones could reside on separate physical or logical networks.&nbsp; An exploit could allow the attacker to render an affected device unavailable, which may result in a denial of service condition.&nbsp; However, an attacker could not gain access to confidential information or gain any additional privileges as a result of a successful attack. This vulnerability appears to be a state management bug.&nbsp; When the affected devices respond to a specific sequence of SIP messages, the phone may corrupt its state table, which could result in a crash that triggers a reboot of the device. Cisco 7940 and 7960 IP phones running firmware version 8.7 are not affected by this vulnerability, as this version contains the correction.","severity":"Medium","published_at":"2007-08-21T20:30:31Z","updated_at":"2007-08-21T20:30:31Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20070821-CVE-2007-4459","csaf_url":"https://sec.cloudapps.cisco.com/security/center/contentjson/CiscoSecurityAdvisory/Cisco-SA-20070821-CVE-2007-4459/csaf/Cisco-SA-20070821-CVE-2007-4459.json","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure."},"freshness":{"last_source_refreshed_at":"2026-07-21T05:16:34Z","latest_source_refresh_at":"2026-07-21T05:16:34Z","oldest_source_refresh_at":"2026-07-21T03:00:03Z","all_sources_fresh":true,"sources":[{"source":"cisco_advisories","label":"Cisco advisories","last_success_at":"2026-07-21T03:00:03Z","stale":false},{"source":"cisco_csaf","label":"Cisco CSAF","last_success_at":"2026-07-21T05:14:24Z","stale":false},{"source":"nvd_cves","label":"NVD CVEs","last_success_at":"2026-07-21T05:16:30Z","stale":false},{"source":"cisa_kev","label":"CISA KEV","last_success_at":"2026-07-21T05:16:31Z","stale":false},{"source":"first_epss","label":"EPSS","last_success_at":"2026-07-21T05:16:34Z","stale":false}]},"summary":{"cve_count":1,"visible_product_count":1,"public_evidence_count":1,"kev_count":0,"highest_epss":0.13989},"cves":[{"id":"CVE-2007-4459","kev":false,"epss":{"score":0.13989,"percentile":0.96145,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"}}],"public_evidence":[{"product":{"name":"Cisco IP phone","slug":"cisco-ip-phone","vendor":"Cisco"},"cve":{"id":"CVE-2007-4459"},"evidence_type":"structured_affected","evidence_label":{"scope":"CSAF product evidence","label":"product_status known affected"},"evidence_source":"Cisco CSAF","source":"Cisco CSAF","source_document_fetched_at":"2026-07-20T04:05:14Z","csaf_status":"known_affected","csaf_product_status":"known_affected","csaf_product_status_path":"vulnerabilities[].product_status.known_affected","raw_product_name":"Cisco IP phone","exposure_verdict":"not_assessed","verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","exposure_verdict_reason":"Public evidence does not evaluate exact release, platform, enabled features, configuration, compensating controls, or live exposure.","kev":false,"epss":{"score":0.13989,"score_date":"2026-07-20","updated_at":"2026-07-21T05:16:32Z"},"published_at":"2007-08-21T20:30:31Z","updated_at":"2007-08-21T20:30:31Z","advisory_updated_at":"2007-08-21T20:30:31Z","source_url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20070821-CVE-2007-4459","row_display_order":1}]}