First published: Wed Aug 07 2024(Updated: )
Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an attacker to execute arbitrary commands on the underlying operating system or cause a denial of service (DoS)
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco SPA300 Series IP Phone | ||
Cisco SPA500 Series IP Phones firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)
The severity of cisco-sa-spa-http-vulns-RJZmX2Xz is high due to the potential for arbitrary command execution and denial of service.
To fix cisco-sa-spa-http-vulns-RJZmX2Xz, update your Cisco Small Business SPA300 or SPA500 Series IP Phones to the latest firmware version.
The affected products in cisco-sa-spa-http-vulns-RJZmX2Xz include the Cisco Small Business SPA300 Series and SPA500 Series IP Phones.
cisco-sa-spa-http-vulns-RJZmX2Xz describes vulnerabilities that allow arbitrary command execution and denial of service in the web-based management interface.
Yes, cisco-sa-spa-http-vulns-RJZmX2Xz can potentially lead to unauthorized access due to the ability to execute arbitrary commands.