Home > Security News > Cisco warns of IP phone flaws
Security News:
EMAIL THIS

Cisco warns of IP phone flaws

By Bill Brenner, Senior News Writer
22 Feb 2007 | SearchSecurity.com

Security Wire Daily News
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

Attackers could circumvent security restrictions and compromise certain Cisco IP phones by exploiting a series of flaws, the networking giant warned Wednesday. Some of the problems have been fixed.

The first problem is with the Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G and 7971G devices. The phones contain a hard-coded default user account with a default password that's remotely accessible via a Secure Shell (SSH) server enabled on the phone.
Cisco in the news:
How to restrict traffic between the VPN server and remote Cisco clients

Cisco to acquire Reactivity for $135 million


Cisco routers threatened by drive-by pharming

Cisco fixes IOS flaws

Cisco bolsters security with IronPort buy

"This default user account may be leveraged to gain administrative access to a vulnerable phone via a privilege escalation vulnerability," Cisco warned. "The default user account may also execute commands causing a phone to become unstable and result in a denial of service."

The company has made free software available to address the flaws.

Researchers also found a series of flaws in the Cisco Unified IP Conference Station and IP phone devices.

According to Cisco:

  • It may be possible to access the Unified IP Conference Station administrative HTTP interface without authentication. "This vulnerability can be exploited remotely with no authentication and no user interaction," Cisco said. "If exploited, the attacker may alter the device configuration or create a denial of service." In a default configuration the attack vector is through TCP port 80, Cisco added.
  • Vulnerable Cisco Unified IP Phones contain a default username and password that may be accessed via SSH. "This vulnerability can be exploited remotely with no user interaction," Cisco said. "If exploited, the attacker may be able to modify the device configuration or perform additional attacks." The attack vector is through TCP port 22, the vendor added.
  • Affected Cisco Unified IP Phones contain privilege escalation vulnerabilities that allow local, authenticated users to obtain administrative access to the phone. "This vulnerability may be exploited remotely with authentication and no user interaction," Cisco said. "If exploited, the attacker may be able to modify the device configuration or cause a denial of service." The attack vector is through TCP port 22, the vendor said.

    The Cisco advisory offers a breakdown of the flaws it has fixed as well as those for which a patch is in development.

    In addition to the IP phone issues, the company said it has fixed a flaw in its Cisco Secure Services Client (CSSC). CSSC is a software client that enables customers to deploy a single authentication framework using the 802.1X authentication standard across multiple device types to access both wired and wireless networks. A lightweight version of the CSSC client is also a component of the Cisco Trust Agent (CTA) within the Cisco Network Admission Control (NAC) Framework solution.

    Cisco said these products are affected by multiple vulnerabilities, including privilege escalations and information disclosure.

    Tags: Handheld and Mobile Device Security Best PracticesNetwork Device ManagementSmartphone and PDA Viruses and ThreatsVIEW ALL TAGS

    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



    RELATED CONTENT
    Handheld and Mobile Device Security Best Practices
    Researchers find thousands of flawed embedded devices
    Best Mobile Data Security Products
    Should Windows Mobile updates come from Microsoft?
    MMS messaging spoof hack could have global ramifications
    How to prevent mobile phone spying
    Unified communications: Securing a converged infrastructure
    RIM patches serious BlackBerry Attachment Service flaws
    How secure are iPhone App Store mobile applications?
    Is there a spy on my mobile device?
    Mobile phones win during Pwn2Own contest
    Handheld and Mobile Device Security Best Practices Research

    Network Device Management
    Researchers find thousands of flawed embedded devices
    Is there a way to block iPhone widgets that bypass Web filters?
    Will an application usage policy best control network bandwidth?
    What is the difference between static and dynamic network validation?
    How to manage network bandwidth with distributed ISP bandwidth
    DNSSEC deployments gain momentum since Kaminsky DNS bug
    Firewall rule management best practices
    What are best practices for fiber optic cable security?
    The requirements for being a PCI DSS-compliant service provider
    Enterprise UTM security: The best threat management solution?

    Smartphone and PDA Viruses and Threats
    US-CERT warns of BlackBerry snooping software
    Mini guide: How to remove and prevent Trojans, malware and spyware
    SMS attacks against BlackBerry certificate flaw possible
    MMS messaging spoof hack could have global ramifications
    Unified communications: Securing a converged infrastructure
    RIM patches serious BlackBerry Attachment Service flaws
    Latest Apple iPhone features prompt security concerns
    SMS mobile worm attacks Symbian smartphones
    Smartphone security lacking at many businesses
    RIM warns of serious vulnerability in BlackBerry Web loader

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    OCSP  (SearchSecurity.com)
    trusted computing base  (SearchSecurity.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary



  • More Tips to Secure Your Network
    TechTarget Security Media
    Information Security View this month\\'s issue and subscribe today.
    Information Security Decisions Apply online for free conference admission.
    SearchSecurity.com
    HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Site Map




    All Rights Reserved, Copyright 2003 - 2009, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts