7.2
CWE
264
Advisory Published
Updated

CVE-2007-1072

First published: Thu Feb 22 2007(Updated: )

The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Cisco Unified IP Phone 7906G Firmware=8.0\(4\)-sr1
Cisco Unified IP Phone 7906G Firmware
Cisco Unified IP Phone 7911G Firmware=8.0\(4\)-sr1
Cisco Unified IP Phone firmware 7911G
Cisco Unified IP Phone 7941G Firmware=8.0\(4\)-sr1
Cisco Unified IP Phone 7941G Firmware
Cisco Unified IP Phone 7961G Firmware=8.0\(4\)-sr1
Cisco Unified IP Phone firmware 7961G
Cisco Unified IP Phone firmware 7970G=8.0\(4\)-sr1
Cisco Unified IP Phones
Cisco Unified IP Phone firmware=8.0\(4\)-sr1
Cisco Unified IP Phone firmware 7971G

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2007-1072?

    CVE-2007-1072 is classified as a high-severity vulnerability due to its potential to escalate privileges or cause a denial of service.

  • How do I fix CVE-2007-1072?

    To mitigate CVE-2007-1072, upgrade the firmware of affected Cisco Unified IP Phones to versions beyond 8.0(4)SR1.

  • Which Cisco Unified IP Phones are affected by CVE-2007-1072?

    CVE-2007-1072 affects the Cisco Unified IP Phone models 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G running firmware 8.0(4)SR1 or earlier.

  • Can CVE-2007-1072 be exploited remotely?

    CVE-2007-1072 can potentially be leveraged remotely if combined with the vulnerability identified in CVE-2007-1063.

  • What are the potential impacts of CVE-2007-1072?

    The impacts of CVE-2007-1072 include unauthorized privilege escalation and service disruptions on affected Cisco IP Phones.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203