CVE-2005-3803: High severity Cisco 7920 Wireless Ip Phone vulnerability
Cisco IP Phone (VoIP) 7920 1.0(8) contains certain hard-coded ("fixed") public and private SNMP community strings that cannot be changed, which allows remote attackers to obtain sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-3803?
CVE-2005-3803 is classified as a medium severity vulnerability due to the risk of unauthorized access to sensitive information.
How do I fix CVE-2005-3803?
There is no direct fix for CVE-2005-3803 since the hard-coded SNMP community strings cannot be changed; consider implementing network segmentation or access controls to mitigate risks.
What devices are affected by CVE-2005-3803?
CVE-2005-3803 affects Cisco IP Phone 7920 running firmware version 1.0(8).
What type of attack does CVE-2005-3803 facilitate?
CVE-2005-3803 allows remote attackers to potentially obtain sensitive information through exploitation of the fixed SNMP community strings.
Is there a workaround for CVE-2005-3803?
While no patch can be applied, users can limit exposure by restricting SNMP traffic to trusted networks and disabling SNMP if not needed.