CVE-2007-5640
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.82%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration via a resume message to the Signaling Server that has a spoofed source IP address for the phone. NOTE: the attack is more disruptive if a new spoofed resume message is sent after each re-registration.
- CVSS 2.0
- 7.1 HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
- EPSS
- 1.82% probability · 78th percentile
- CISA KEV
- Not listed
- Affected
- nortel/business communications manager · nortel/centrex ip client manager · nortel/centrex ip element manager · nortel/meridian option 11c · nortel/meridian option 51c · nortel/meridian option 61c · nortel/meridian option 81c · nortel/meridian sl100 · nortel/mobile voice client 2050
- Source
- cve@mitre.org
References
- http://osvdb.org/41772
- http://secunia.com/advisories/27234Vendor Advisory
- http://securityreason.com/securityalert/3274
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654641Patch
- http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_forced_re-authentication_v1.0.txtExploit
- http://www.securityfocus.com/archive/1/482481/100/0/threaded
- http://www.securityfocus.com/bid/26124
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37254
- http://osvdb.org/41772
- http://secunia.com/advisories/27234Vendor Advisory
- http://securityreason.com/securityalert/3274
- http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654641Patch
- http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_forced_re-authentication_v1.0.txtExploit
- http://www.securityfocus.com/archive/1/482481/100/0/threaded
- http://www.securityfocus.com/bid/26124
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37254
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.