PT-2007-3175 · Sprint Nextel · Sprint Voice Mail Systems

Gus Bourg

·

Published

2007-04-02

·

Updated

2008-11-13

·

CVE-2007-1821

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Sprint Nextel Sprint voice mail systems (affected versions not specified)
Description: The issue allows remote attackers to access and manipulate voice mail messages by spoofing Calling Number Identification (CNID, aka Caller ID), enabling them to retrieve or remove messages, or reconfigure mailboxes.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1821

Affected Products

Sprint Voice Mail Systems