41769vdb entry
http://osvdb.org/41769 CVE-2007-5637
Nortel Networks - Multiple UNIStim VoIP Products Remote Eavesdrop Vulnerabilities
Record summary
CVE-2007-5637 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines allow remote attackers to eavesdrop on the physical environment via an Open Audio Stream message that enables "surveillance mode." NOTE: issues relating to a small ID number space can be leveraged to make this attack easier.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNortel Networks - Multiple UNIStim VoIP Products Remote Eavesdrop VulnerabilitiesExploitDB exploitby Daniel StirnimannNot analyzed1 file
References
1027234Third-party advisory
http://secunia.com/advisories/27234 3272Third-party advisory
http://securityreason.com/securityalert/3272 support.nortel.comConfirmation
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654714 csnc.ch
http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_surveillance_mode_v1.0.txt 20071018 Nortel IP Phone Surveillance Modemailing list
http://www.securityfocus.com/archive/1/482478/100/0/threaded 26120vdb entry
http://www.securityfocus.com/bid/26120 www116.nortel.comConfirmation
http://www116.nortel.com/pub/repository/CLARIFY/DOCUMENT/2007/42/022870-01.pdf nortel-ipphone-unistim-audio-hijacking(37255)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/37255 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-5637