CVE-2006-4029
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 8.3%
from disclosure to weapon0 days
Published on NVDAug 9
1st PoCJul 24
exploitation probability
8.3%top 6% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in sipd.dll in AGEphone 1.24 and 1.38.1 allows remote attackers to execute arbitrary code via a crafted UDP SIP packet.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/28266⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://marc.info/?l=full-disclosure&m=115383213602413&w=2http://secunia.com/advisories/21175http://securityreason.com/securityalert/1345http://securitytracker.com/id?1016577https://exchange.xforce.ibmcloud.com/vulnerabilities/27944http://vuln.sg/agephone1381-en.htmlhttp://www.securityfocus.com/archive/1/441086/100/100/threadedhttp://www.securityfocus.com/bid/19148http://www.vupen.com/english/advisories/2006/2959