AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-6190

LOW · CVSS 3.5 EPSS 1.04%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-11-30 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-6190
Severity
LOW
CVSS
3.5
EPSS
1.04%
Cisco

Original NVD Description

The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that specifies a Real-Time Transport Protocol (RTP) audio stream.