CVE-2007-5639
Title: Nortel Ip Phone 1150E Denial of Service (DoS)
Denial of Service (DoS)
Proof Of Concept
No public PoC currently indexed for CVE-2007-5639.
CWE Category
NVD-CWE-noinfo
Published Date
Oct 23, 2007
Modified Date
Apr 09, 2025
Exploit Status
Not Found
Score
7.1
CVSS v2.0
Exploit Probability (EPSS)
1.21%
Vulnerability Summary
CVE-2007-5639: The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and other Nortel IP Phone, Mobile Voice Client, and WLAN Handsets products allow remote attackers to cause a denial of service (device hang) via a flood of Mute and UnMute messages that have a spoofed source IP address for the Signaling Server.
Impacted Vendors
Reference Links
http://securityreason.com/securityalert/3273
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654715
http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_flooding_denial_of_service_v1.0.txt
http://www.securityfocus.com/archive/1/482480/100/0/threaded
http://www.securityfocus.com/bid/26122
https://exchange.xforce.ibmcloud.com/vulnerabilities/37253
http://securityreason.com/securityalert/3273
http://support.nortel.com/go/main.jsp?cscat=BLTNDETAIL&id=654715
http://www.csnc.ch/static/advisory/csnc/nortel_IP_phone_flooding_denial_of_service_v1.0.txt
http://www.securityfocus.com/archive/1/482480/100/0/threaded
http://www.securityfocus.com/bid/26122
https://exchange.xforce.ibmcloud.com/vulnerabilities/37253
CVSS v2.0
Source Entity
[email protected]
Severity
HIGH
7.1
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:N/AC:M/Au:N/C:N/I:N/A:C
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2007-5639 Exploits & PoCs (Proof Of Concept)
No public PoCs found in our database for this CVE.
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:N/AC:M/Au:N/C:N/I:N/A:C
Affected Stack
No specific products linked.