|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
If you have found a vulnerability, please send to our SecurityAlert Database : secalert()securityreason()com
Also if you have new ( 0-day ) exploit, please send to our ExploitAlert Archive :
exploit()securityreason()com |
|
|
Home SecurityAlert Database |
|
|
Topic : | (0-Day) GrandStream GXP-2000 VoIP Desktop Phone multiple undocumented UDP ports and DoS<br />
|
SecurityAlert : 1718
CVE : CVE-2006-5231
SecurityRisk : Low (About)
Remote Exploit : Yes
Local Exploit : Yes
Exploit Available : No
Credit : Shawn Merdinger, Independent Security Researcher
Published : 15.10.2006
Affected Software : | GrandStream GXP-2000 VoIP Desktop Phone 1.1.0.5 |
 Advisory Content : Title: GrandStream GXP-2000 VoIP Desktop Phone multiple undocumented UDP
ports and DoS
Version: 1.1.0.5
Issues:
1.The phone has multiple undocumented open UDP ports, including 5062,
5064, 5066, 9876, 26789
2.Sending large amount of ascii data via NetCat to any open UDP port,
including UDP/5060, results in the phone either rebooting or placed in a
frozen state, possibly appearing normal (display maintains text, etc.),
except the phone will not be functional.
Credit:
Shawn Merdinger, Independent Security Researcher
Feedback :
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.
|
|
|
|