cisco-sa-ip-phone-cmd-inj-KMFynVcP: Cisco IP Phone 6800, 7800, and 8800 Series Web UI Vulnerabilities
Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition.For more information about these vulnerabilities, see the
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-ip-phone-cmd-inj-KMFynVcP?
The vulnerability cisco-sa-ip-phone-cmd-inj-KMFynVcP is classified as high severity due to its potential for remote code execution.
How do I fix cisco-sa-ip-phone-cmd-inj-KMFynVcP?
To mitigate the cisco-sa-ip-phone-cmd-inj-KMFynVcP vulnerability, ensure that affected Cisco IP Phones are updated to the latest firmware version provided by Cisco.
Which devices are affected by cisco-sa-ip-phone-cmd-inj-KMFynVcP?
The cisco-sa-ip-phone-cmd-inj-KMFynVcP vulnerability affects Cisco IP Phone 6800, 7800, and 8800 Series models.
Can cisco-sa-ip-phone-cmd-inj-KMFynVcP be exploited remotely?
Yes, an unauthenticated remote attacker can exploit the cisco-sa-ip-phone-cmd-inj-KMFynVcP vulnerability.
What actions can the attacker perform with cisco-sa-ip-phone-cmd-inj-KMFynVcP?
An attacker can execute arbitrary code or cause a denial of service (DoS) condition through the cisco-sa-ip-phone-cmd-inj-KMFynVcP vulnerability.