VoIP Phone Phreaked by Security Hole
Researchers have discovered a serious vulnerability in the web interface used to control a commonly-found VoIP phone, SNOM Technology’s model 320.
Attackers need the IP address of the phone being targeted to start the attack, but assuming they have this they can use a cross-site scripting approach to hack the phone’s built-in management interface, allowing a range of unwelcome activities.
Read the rest of this story at Techworld.