MEDIUM · 6.4

CVE-2008-5871

Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the snoo...

Vulnerability Description

Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the snoop command.

CVSS Score

6.4

MEDIUM

AV:N/AC:L/Au:N/C:N/I:P/A:P
Confidentiality
NONE
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
NortelMultimedia Communication Server 51003.0.13

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-5871?

CVE-2008-5871 is a vulnerability with a CVSS score of 6.4 (MEDIUM). Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the snoo...

How severe is CVE-2008-5871?

CVE-2008-5871 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-5871?

Check the references section above for vendor advisories and patch information. Affected products include: Nortel Multimedia Communication Server 5100.