Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2015-6403

The TFTP implementation on Cisco Small Business SPA30x, SPA50x, SPA51x phones 7.5.7 improperly validates firmware-image file integrity, which allows local users to load a Trojan horse image by leveraging shell access, aka Bug ID CSCut67400.

SeverityHIGH
CVSS7.2
CWECWE-20
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco Small Business SPA500 Series IP Phones cisco-sa-20151209-ipp Cisco OpenVuln
Cisco Small Business SPA300 Series IP Phones cisco-sa-20151209-ipp Cisco OpenVuln
Cisco IP phone cisco-sa-20151209-ipp Cisco OpenVuln