HIGH · 9.3

CVE-2007-1820

Nortel Networks CallPilot and Meridian Mail voicemail systems, when a mailbox has auto logon enabled, allow remote attackers to retrieve or remove messages, or reconfigure the mailbox, by spoofing Cal...

Vulnerability Description

Nortel Networks CallPilot and Meridian Mail voicemail systems, when a mailbox has auto logon enabled, allow remote attackers to retrieve or remove messages, or reconfigure the mailbox, by spoofing Calling Number Identification (CNID, aka Caller ID).

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
NortelCallpilotAll versions
NortelMeridian MailAll versions

References

FAQ

What is CVE-2007-1820?

CVE-2007-1820 is a vulnerability with a CVSS score of 9.3 (HIGH). Nortel Networks CallPilot and Meridian Mail voicemail systems, when a mailbox has auto logon enabled, allow remote attackers to retrieve or remove messages, or reconfigure the mailbox, by spoofing Cal...

How severe is CVE-2007-1820?

CVE-2007-1820 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-1820?

Check the references section above for vendor advisories and patch information. Affected products include: Nortel Callpilot, Nortel Meridian Mail.