Vulnerability Details CVE-2002-0672
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 allows attackers with physical access to restore the phone to factory defaults without authentication via a menu option, which sets the administrator password to null.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.2%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2002-0672
-
cpe:2.3:h:pingtel:xpressa:1.2.5
-
cpe:2.3:h:pingtel:xpressa:1.2.7.4