Записи snom
8 опубликованных записей вендора snom.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-20 Improper Input Validation1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-290 Authentication Bypass by Spoofing1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2009-1048Эксплойта нет | The web interface on the snom VoIP phones snom 300, snom 320, snom 360, snom 370, and snom 820 with firmware 6.5 before 6.5.20, 7.1 before 7snom · snom 300 firmware · CWE-290 | Критическая9,8 | — | 6,4 % | 14 авг. 2009 г. |
37Наблюдать | CVE-2008-1249Эксплойта нет | snomControl.swf in the central phone server for the Snom 320 SIP Phone allows remote attackers to cause a denial of service (application crasnom · 320 sip phone · CWE-20 | Критическая9,4 | — | 1,4 % | 10 мар. 2008 г. |
37Наблюдать | CVE-2008-1250Эксплойта нет | Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the central phone server for the Snom 320 SIP Phone allowsnom · 320 sip phone · CWE-352 | Критическая9,3 | — | 0,9 % | 10 мар. 2008 г. |
26Наблюдать | CVE-2007-3440Эксплойта нет | The Snom 320 SIP Phone, running snom320 linux 3.25, snom320-SIP 6.2.3, and snom320 jffs23.36, allows remote attackers to place calls to arbisnom · snom 320 linux | Средняя6,4 | — | 2,2 % | 26 июн. 2007 г. |
23Наблюдать | CVE-2008-1248Эксплойта нет | The web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers to make arbitrary phone calls via the "Callsnom · 320 sip phone · CWE-352 | Средняя5,8 | — | 0,6 % | 10 мар. 2008 г. |
21Наблюдать | CVE-2007-3439Эксплойта нет | The Snom 320 SIP Phone, running snom320 linux 3.25, snom320-SIP 6.2.3, and snom320 jffs23.36, allows remote attackers to read a list of misssnom · snom 320 linux | Средняя5,0 | — | 1,9 % | 26 июн. 2007 г. |
17Наблюдать | CVE-2008-1251Эксплойта нет | Cross-site scripting (XSS) vulnerability in the web interface on the central phone server for the Snom 320 SIP Phone allows remote attackerssnom · 320 sip phone · CWE-79 | Средняя4,3 | — | 1,1 % | 10 мар. 2008 г. |
13Наблюдать | CVE-2010-2291Эксплойта нет | Unspecified vulnerability in the web interface in snom VoIP Phone firmware 8 before 8.2.35 allows remote attackers to bypass intended restrisnom · voip phone firmware · CWE-264 | Низкая3,3 | — | 0,8 % | 15 июн. 2010 г. |
- CVE-2009-104841В плане
The web interface on the snom VoIP phones snom 300, snom 320, snom 360, snom 370, and snom 820 with firmware 6.5 before 6.5.20, 7.1 before 7
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %snom · snom 300 firmware14 авг. 2009 г.
- CVE-2008-124937Наблюдать
snomControl.swf in the central phone server for the Snom 320 SIP Phone allows remote attackers to cause a denial of service (application cra
КритическаяCVSS 9,4Эксплойта нетEPSS 1 %snom · 320 sip phone10 мар. 2008 г.
- CVE-2008-125037Наблюдать
Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the central phone server for the Snom 320 SIP Phone allow
КритическаяCVSS 9,3Эксплойта нетEPSS 1 %snom · 320 sip phone10 мар. 2008 г.
- CVE-2007-344026Наблюдать
The Snom 320 SIP Phone, running snom320 linux 3.25, snom320-SIP 6.2.3, and snom320 jffs23.36, allows remote attackers to place calls to arbi
СредняяCVSS 6,4Эксплойта нетEPSS 2 %snom · snom 320 linux26 июн. 2007 г.
- CVE-2008-124823Наблюдать
The web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers to make arbitrary phone calls via the "Call
СредняяCVSS 5,8Эксплойта нетEPSS 1 %snom · 320 sip phone10 мар. 2008 г.
- CVE-2007-343921Наблюдать
The Snom 320 SIP Phone, running snom320 linux 3.25, snom320-SIP 6.2.3, and snom320 jffs23.36, allows remote attackers to read a list of miss
СредняяCVSS 5,0Эксплойта нетEPSS 2 %snom · snom 320 linux26 июн. 2007 г.
- CVE-2008-125117Наблюдать
Cross-site scripting (XSS) vulnerability in the web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers
СредняяCVSS 4,3Эксплойта нетEPSS 1 %snom · 320 sip phone10 мар. 2008 г.
- CVE-2010-229113Наблюдать
Unspecified vulnerability in the web interface in snom VoIP Phone firmware 8 before 8.2.35 allows remote attackers to bypass intended restri
НизкаяCVSS 3,3Эксплойта нетEPSS 1 %snom · voip phone firmware15 июн. 2010 г.