← Back to browse · API

CVE-2023-20078

Severity
CRITICAL
CVSS
9.8
EPSS
0.10351
Risk score
42.82
CISA KEV
No
PoC
No
Published
2023-03-03
Modified
2024-10-28
First seen
2026-08-07
Aliases
EUVD-2023-24257, GHSA-4WW6-5Q5C-2GC5
Products
Cisco:Cisco IP Phones with Multiplatform Firmware n/a
Sources
euvd EUVD-2023-24257

Description

Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote attacker to execute arbitrary code or cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.

References