CVE-2014-4046
- EPSS 3.22%
- Veröffentlicht 17.06.2014 14:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Asterisk Open Source 11.x before 11.10.1 and 12.x before 12.3.1 and Certified Asterisk 11.6 before 11.6-cert3 allows remote authenticated Manager users to execute arbitrary shell commands via a MixMonitor action.
- EPSS 11.71%
- Veröffentlicht 17.06.2014 14:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Asterisk Open Source 1.8.x before 1.8.28.1, 11.x before 11.10.1, and 12.x before 12.3.1 and Certified Asterisk 1.8.15 before 1.8.15-cert6 and 11.6 before 11.6-cert3 allows remote attackers to cause a denial of service (connection consumption) via a l...
CVE-2014-2287
- EPSS 22.86%
- Veröffentlicht 18.04.2014 22:14:38
- Zuletzt bearbeitet 12.04.2025 10:46:40
channels/chan_sip.c in Asterisk Open Source 1.8.x before 1.8.26.1, 11.8.x before 11.8.1, and 12.1.x before 12.1.1, and Certified Asterisk 1.8.15 before 1.8.15-cert5 and 11.6 before 11.6-cert2, when chan_sip has a certain configuration, allows remote ...
CVE-2014-2288
- EPSS 29.88%
- Veröffentlicht 18.04.2014 22:14:38
- Zuletzt bearbeitet 12.04.2025 10:46:40
The PJSIP channel driver in Asterisk Open Source 12.x before 12.1.1, when qualify_frequency "is enabled on an AOR and the remote SIP server challenges for authentication of the resulting OPTIONS request," allows remote attackers to cause a denial of ...
CVE-2014-2289
- EPSS 17.38%
- Veröffentlicht 18.04.2014 22:14:38
- Zuletzt bearbeitet 12.04.2025 10:46:40
res/res_pjsip_exten_state.c in the PJSIP channel driver in Asterisk Open Source 12.x before 12.1.0 allows remote authenticated users to cause a denial of service (crash) via a SUBSCRIBE request without any Accept headers, which triggers an invalid po...
CVE-2014-2286
- EPSS 46.21%
- Veröffentlicht 18.04.2014 22:14:37
- Zuletzt bearbeitet 12.04.2025 10:46:40
main/http.c in Asterisk Open Source 1.8.x before 1.8.26.1, 11.8.x before 11.8.1, and 12.1.x before 12.1.1, and Certified Asterisk 1.8.x before 1.8.15-cert5 and 11.6 before 11.6-cert2, allows remote attackers to cause a denial of service (stack consum...
- EPSS 2.55%
- Veröffentlicht 19.12.2013 22:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in the unpacksms16 function in apps/app_sms.c in Asterisk Open Source 1.8.x before 1.8.24.1, 10.x before 10.12.4, and 11.x before 11.6.1; Asterisk with Digiumphones 10.x-digiumphones before 10.12.4-digiumphones; and Certified Asterisk...
- EPSS 4.1%
- Veröffentlicht 09.09.2013 17:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.17.x through 1.8.22.x, 1.8.23.x before 1.8.23.1, and 11.x before 11.5.1 and Certified Asterisk 1.8.15 before 1.8.15-cert3 and 11.2 before 11.2-cert2 allows remote attackers to c...
- EPSS 5.08%
- Veröffentlicht 09.09.2013 17:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SIP channel driver (channels/chan_sip.c) in Asterisk Open Source 1.8.x before 1.8.23.1, 10.x before 10.12.3, and 11.x before 11.5.1; Certified Asterisk 1.8.15 before 1.8.15-cert3 and 11.2 before 11.2-cert2; and Asterisk Digiumphones 10.x-digiumph...
CVE-2012-5977
- EPSS 1.1%
- Veröffentlicht 04.01.2013 15:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Asterisk Open Source 1.8.x before 1.8.19.1, 10.x before 10.11.1, and 11.x before 11.1.2; Certified Asterisk 1.8.11 before 1.8.11-cert10; and Asterisk Digiumphones 10.x-digiumphones before 10.11.1-digiumphones, when anonymous calls are enabled, allow ...