High severity7.5NVD Advisory· Published Jul 11, 2005· Updated Apr 16, 2026
CVE-2005-2181
CVE-2005-2181
Description
Cisco 7940/7960 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.
Affected products
2- cpe:2.3:o:cisco:ip_phone_7940_firmware:-:*:*:*:*:*:*:*
- cpe:2.3:o:cisco:ip_phone_7960_firmware:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- pentest.tele-consulting.com/advisories/05_07_06_voip-phones.txtnvdBroken LinkVendor Advisory
- www.securitytracker.com/alerts/2005/Jul/1014406.htmlnvdBroken LinkThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/21260nvdThird Party AdvisoryVDB Entry
- marc.infonvdMailing List
News mentions
0No linked articles in our index yet.