CVE-2017-12328 describes a denial-of-service vulnerability in Cisco IP Phone 8800 Series devices, stemming from incomplete input validation of SIP packet headers. An unauthenticated, remote attacker can exploit this by sending a malformed SIP packet, causing the SIP process to restart and drop all active calls. Rated Medium severity (CVSS 5.8), this vulnerability has no known public exploits, Metasploit modules, or significant community discussion, and is not on CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.0\(0.1\)CPE matchmatch criteria | cpe:2.3:o:cisco:ip_phone_8800_series_firmware:11.0\(0.1\):*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.