First published: Thu Jun 21 2007(Updated: )
The Avaya 4602SW IP Phone (Model 4602D02A) with 2.2.2 and earlier SIP firmware accepts SIP INVITE requests from arbitrary source IP addresses, which allows remote attackers to have an unspecified impact.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avaya 4602SW IP Phone | <=r2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3320 is categorized with a medium severity level due to its potential for remote exploitation.
To mitigate CVE-2007-3320, upgrade the Avaya 4602SW IP Phone to a firmware version that is above 2.2.2.
CVE-2007-3320 affects users of the Avaya 4602SW IP Phone with SIP firmware version 2.2.2 and earlier.
CVE-2007-3320 enables remote attackers to send SIP INVITE requests from any IP address, potentially causing various impacts.
CVE-2007-3320 is primarily a concern for devices that have not been updated to secure firmware versions.