CVE-2007-1590

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/03/2007
Last modified:
09/04/2025

Description

The Grandstream BudgeTone 200 IP phone, with program 1.1.1.14 and bootloader 1.1.1.5, allows remote attackers to cause a denial of service (device crash) via SIP (1) INVITE, (2) CANCEL, or unspecified other messages with a WWW-Authenticate header containing a crafted Digest domain.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:grandstream:budgetone_200:1.1.1.5:*:*:*:*:*:*:*
cpe:2.3:h:grandstream:budgetone_200:1.1.1.14:*:*:*:*:*:*:*