The Linksys SPA-921 VoIP desktop phone version 1.0.0 suffers from a denial of service condition.
643943c56b81389f6fb8a7f741802191The GrandStream GXP-2000 VoIP desktop phone version 1.1.0.5 suffers from a denial of service condition.
fd12dbc946a7f65411495f08cba852bcThe PolyCom IP-301 VoIP desktop phone suffers from multiple denial of service issues.
2817fa2a20e9c0c62c135cd5b620d58fThe Zyxel P2000W (Version 2) VoIP wireless phone has an undocumented port, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
96ca6bc9af5bca592324b49bf42a323fMPM HP-180W VoIP Wireless Desktop Phone has an undocumented port and service, UDP/9090, that provides an unauthenticated attacker information about the phone, specifically the phone's MAC address and software version.
fadfe8f8221ae189065ce55a612f150cAn undocumented port and debug service on TCP/60023 enables an attacker to access without authentication the phone's configuration/debug shell via telnet.
625deac3a49e8ba2266f9485914de057An undocumented open port, UDP/17185, VxWorks WDB remote debugging (wdbrpc) is left in from development. This open port may allow an attacker unauthenticated access to the phone's OS, yield sensitive information, create opportunities for DoS, etc.
ef73181990373bb697dbdc05b50f365dThe ACT P202S VoIP 802.11b wireless phone, version 1.01.21 on VxWorks has three undocumented ports and extraneous services that can be exploited by attackers.
08ca45f0286cca81f0131d17a74e1cb3The Senao SI-680H VoIP Wifi phone has an undocumented port open that allows unauthenticated access to the phone's underlying OS.
b85f15a5d14047385f034776aa360246The Zyxel P2000W (Version1) VoIP Wifi phone allows for unauthenticated access to data and has hardcoded DNS servers.
adec257c80a89c9f29d8ae2f46a46f52The UTstarcom F1000 VoIP Wifi phone suffers from multiple vulnerabilities including unauthenticated access and default logins.
0a40dc1b9493880725f3ade8552b96e9Hitachi IP5000 VoIP Wifi phones suffer from multiple vulnerabilities including a hard coded administrator password, an undocumented shell on tcp/3390, and management of the devices without proper credentials.
a7e69c955572c43f92f93bcd5b818c1c