Personalise your experience

Get the latest insights relevant to your sector.

· 03 Apr 2023

Cisco IP Phone 6800, 7800, 7900, and 8800 Series Web UI Vulnerabilities

Overview

Multiple vulnerabilities exist in the web-based management interface of certain Cisco IP Phones. They could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition.

Full description of the vulnerability is available on the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ip-phone-cmd-inj-KMFynVcP

What do you need to do?

1.  Confirm whether you’re using any of the impacted devices:

  • IP Phone 6800 Series with Multiplatform Firmware
  • IP Phone 7800 Series with Multiplatform Firmware
  • IP Phone 8800 Series with Multiplatform Firmware

2.   If you’re using any of the impacted phones and their software firmware version is lower than 12.0.1, make sure to upgrade the firmware of your IP Phones.

3.   To get relevant software, refer to the file below.

Service notice

If you haven't already done so, bookmark this website and register your details to receive email alerts.