CVE
- Id
- 5065
- CVE No.
- CVE-2002-0675
- Status
- Candidate
- Description
- Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not require administrative privileges to perform a firmware upgrade, which allows unauthorized users to upgrade the phone.
- Phase
- Modified (20050610)
- Votes
- MODIFY(1) Frech | NOOP(5) Armstrong, Cole, Cox, Foat, Wall
- Comments
- Frech> XF:pingtel-xpressa-firmware-upgrade(9570)