Language:
http://downloads.asterisk.org/pub/security/ASA-2007-010.html
https://seclists.org/fulldisclosure/2007/Apr/652
https://www.securityfocus.com/archive/1/472804/30/0/threaded
Severity: High
ID: 25671
File Name: asterisk_sip_t38_sdp_overflow.nasl
Version: 1.27
Type: remote
Family: Gain a shell remotely
Published: 7/6/2007
Updated: 4/11/2022
Configuration: Enable paranoid mode, Enable thorough checks
Supported Sensors: Nessus
Risk Factor: High
Score: 7.4
Risk Factor: High
Base Score: 7.6
Temporal Score: 6.3
Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C
CPE: cpe:/a:digium:asterisk
Required KB Items: Settings/ParanoidReport, asterisk/sip_detected
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 4/24/2007
Vulnerability Publication Date: 4/25/2007
Core Impact
CVE: CVE-2007-2293
BID: 23648