First published: Sun Jul 10 2005(Updated: )
Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Grandstream BudgeTone | =100 | |
All of | ||
Grandstream Bt-100 Firmware | ||
Grandstream Bt-100 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.