[cisco-voip] Cisco Security Advisory: Cisco Unified IP Conference Station and IP Phone Vulnerabilities

cisco.voip cisco.voip at verizon.net
Thu Feb 22 11:59:20 EST 2007


Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G and 7971G 
devices contain a hard coded default user account with a default 
password which is remotely accessible via a Secure Shell (SSH) server 
enabled on the phone. This default user account may be leveraged to 
gain administrative access to a vulnerable phone via a privilege 
escalation vulnerability.

Does anyone know the default user account info?



More information about the cisco-voip mailing list