Vulnerability Description
The HTTP server in Linksys SPA-921 VoIP Desktop Phone allows remote attackers to cause a denial of service (reboot) via (1) a long URL, or a long (2) username or (3) password during Basic Authentication.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linksys | Spa921 | 1.0.0 |
References
- http://archives.neohapsis.com/archives/fulldisclosure/2006-10/0089.html
- http://secunia.com/advisories/22267Vendor Advisory
- http://www.osvdb.org/29671
- http://www.securityfocus.com/bid/20346
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29349
- http://archives.neohapsis.com/archives/fulldisclosure/2006-10/0089.html
- http://secunia.com/advisories/22267Vendor Advisory
- http://www.osvdb.org/29671
- http://www.securityfocus.com/bid/20346
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29349
FAQ
What is CVE-2006-7121?
CVE-2006-7121 is a vulnerability with a CVSS score of 7.8 (HIGH). The HTTP server in Linksys SPA-921 VoIP Desktop Phone allows remote attackers to cause a denial of service (reboot) via (1) a long URL, or a long (2) username or (3) password during Basic Authenticati...
How severe is CVE-2006-7121?
CVE-2006-7121 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-7121?
Check the references section above for vendor advisories and patch information. Affected products include: Linksys Spa921.