CVE Published: 03/03/2023 |
CVE Updated: 28/10/2024 |
CVE Year: 2023 Source: cisco |
Vendor: Cisco |
Product: Cisco IP Phones with Multiplatform Firmware Status : PUBLISHED
CVE-2023-20079 Description
Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.
Metrics
CVSS Version: 3.1 |
Base Score: 9.8 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H