PT-2005-4477 · Hitachi · Hitachi Ip5000 Voip Wifi Phone
Shawn Merdinger
·
Published
2005-11-21
·
Updated
2016-10-18
·
CVE-2005-3722
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Hitachi IP5000 VOIP WIFI Phone version 1.5.6
Description
The issue allows remote attackers to gain read or write access to system configuration using arbitrary SNMP credentials. This is related to the SNMP v1/v2c daemon.
Recommendations
For version 1.5.6, consider restricting access to the SNMP service until a patch is available. As a temporary workaround, limit the use of SNMP v1/v2c to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hitachi Ip5000 Voip Wifi Phone