CVE-2008-1250

Snom 320 - CSRF

Title source: llm

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the central phone server for the Snom 320 SIP Phone allow remote attackers to perform actions as the phone user, as demonstrated by inserting an address-book entry containing an XSS sequence.

Scores

EPSS 0.0031
EPSS Percentile 53.6%

Classification

CWE
CWE-352
Status draft

Affected Products (1)

snom/320_sip_phone

Timeline

Published Mar 10, 2008
Tracked Since Feb 18, 2026