VYPR

Spa525g2 Firmware

by Cisco Systems, Inc.

CVEs (3)

  • CVE-2019-1923MedJul 17, 2019
    risk 0.43cvss 6.6epss 0.00

    A vulnerability in Cisco Small Business SPA500 Series IP Phones could allow a physically proximate attacker to execute arbitrary commands on the device. The vulnerability is due to improper input validation in the device configuration interface. An attacker could exploit this…

  • CVE-2023-20181MedAug 3, 2023
    risk 0.40cvss 6.1epss 0.01

    A vulnerability in the web-based management interface of Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to conduct XSS attacks. This vulnerability is due to insufficient validation of user-supplied input by the web-based management…

  • CVE-2023-20218MedAug 3, 2023
    risk 0.38cvss 5.8epss 0.00

    A vulnerability in web-based management interface of Cisco SPA500 Series Analog Telephone Adapters (ATAs) could allow an authenticated, remote attacker to to modify a web page in the context of a user's browser. This vulnerability is due to insufficient validation of…