CVE-2011-0344
- EPSS 0.83%
- Veröffentlicht 08.03.2011 21:59:33
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple stack-based buffer overflows in unspecified CGI programs in the Unified Maintenance Tool web interface in the embedded web server in the Communication Server (CS) in Alcatel-Lucent OmniPCX Enterprise before R9.0 H1.301.50 allow remote attack...
CVE-2007-5361
- EPSS 2.3%
- Veröffentlicht 20.11.2007 19:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Communication Server in Alcatel-Lucent OmniPCX Enterprise 7.1 and earlier caches an IP address during a TFTP request from an IP Touch phone, and uses this IP address as the destination for all subsequent VoIP packets to this phone, which allows r...
CVE-2007-2512
- EPSS 0.49%
- Veröffentlicht 07.06.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Alcatel-Lucent IP-Touch Telephone running OmniPCX Enterprise 7.0 and later enables the mini switch by default, which allows attackers to gain access to the voice VLAN via daisy-chained systems.
- EPSS 13.16%
- Veröffentlicht 31.12.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-si...
- EPSS 0.93%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Alcatel OmniPCX 4400 installs known user accounts and passwords in the /etc/password file by default, which allows remote attackers to gain unauthorized access.
CVE-2002-0293
- EPSS 0.07%
- Veröffentlicht 31.05.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
FTP service in Alcatel OmniPCX 4400 allows the "halt" user to gain root privileges by modifying root's .profile file.
CVE-2002-0294
- EPSS 0.08%
- Veröffentlicht 31.05.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Alcatel 4400 installs the /chetc/shutdown command with setgid privileges, which allows many different local users to shut down the system.
CVE-2002-0295
- EPSS 0.06%
- Veröffentlicht 31.05.2002 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Alcatel OmniPCX 4400 installs files with world-writable permissions, which allows local users to reconfigure the system and possibly gain privileges.