Record summary

CVE-2007-5411 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.

Description

Cross-site scripting (XSS) vulnerability in the Linksys SPA941 VoIP Phone with firmware 5.1.8 allows remote attackers to inject arbitrary web script or HTML via the From header in a SIP message.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBLinksys SPA941 - 'SIP From' HTML InjectionExploitDB exploitby Radu StateNot analyzed1 file
ExploitDB

PoC details

References

5