3027Third-party advisory
http://securityreason.com/securityalert/3027 CVE-2007-4382
CounterPath X-Lite 3.x - SIP phone Remote Denial of Service
Record summary
CVE-2007-4382 has a selected CVSS score of 5.0; EIP currently links 1 catalogued exploit.
Description
CounterPath X-Lite 3.0 34025, and possibly eyeBeam, allows remote attackers to cause a denial of service (device crash) via a SIP INVITE message without a Content-Type header.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCounterPath X-Lite 3.x - SIP phone Remote Denial of ServiceExploitDB exploitby ZwelLNot analyzed1 file
References
620070812 CounterPath X-Lite SIP phone Remote Denial of Service vulnerabilitymailing list
http://www.securityfocus.com/archive/1/476259/100/100/threaded 25299vdb entry
http://www.securityfocus.com/bid/25299 counterpath-sip-invite-dos(35975)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/35975 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-4382 4285exploit
https://www.exploit-db.com/exploits/4285