Home/Product/cisco ip phone 8851 firmware
Product

cisco ip phone 8851 firmware

21 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-20351
< 14.3\(1\)
A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 run
6.1MEDIUM
CVE-2025-20350
< 14.3\(1\)
A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 run
7.5HIGH
CVE-2025-20336
< 14.3\(1\)
A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video
5.3MEDIUM
CVE-2025-20335
< 14.3\(1\)
A vulnerability in the directory permissions of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video
5.3MEDIUM
CVE-2021-1379
< 12.8\(1\)
Multiple vulnerabilities in the Cisco&nbsp;Discovery Protocol and Link Layer Discovery Protocol (LLDP) implementations for Cisco&n
6.5MEDIUM
CVE-2024-20445
< 14.3\(1\)
A vulnerability in the web UI of Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 cou
5.3MEDIUM
CVE-2023-20079
< 11.3.7sr1
Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote a
9.8CRITICAL
CVE-2023-20078
< 11.3.7sr1
Multiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated, remote a
9.8CRITICAL
CVE-2023-20018
< 14.1\(1\)sr2
A vulnerability in the web-based management interface of Cisco IP Phone 7800 and 8800 Series Phones could allow an unauthenticated
8.6HIGH
CVE-2022-20968
all versions
A vulnerability in the Cisco Discovery Protocol processing feature of Cisco IP Phone 7800 and 8800 Series firmware could allow an
8.1HIGH
CVE-2022-20774
< 11.3.5
A vulnerability in the web-based management interface of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware co
6.8MEDIUM
CVE-2022-20660
< 14.1\(1\)
A vulnerability in the information storage architecture of several Cisco IP Phone models could allow an unauthenticated, physical
4.6MEDIUM
CVE-2021-34711
< 14.1\(1\)
A vulnerability in the debug shell of Cisco IP Phone software could allow an authenticated, local attacker to read any file on the
5.5MEDIUM
CVE-2021-33478
< 14.0\(1\)
The TrustZone implementation in certain Broadcom MediaxChange firmware could allow an unauthenticated, physically proximate attack
6.8MEDIUM
CVE-2020-3574
< 11.3.2
A vulnerability in the TCP packet processing functionality of Cisco IP Phones could allow an unauthenticated, remote attacker to c
7.5HIGH
CVE-2020-3161
all versions
A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root pr
9.8CRITICAL
CVE-2020-3111
< 12.7\(1\)
A vulnerability in the Cisco Discovery Protocol implementation for the Cisco IP Phone could allow an unauthenticated, adjacent att
8.8HIGH
CVE-2019-16008
< 11.3\(1\)
A vulnerability in the web-based GUI of Cisco IP Phone 6800, 7800, and 8800 Series with Multiplatform Firmware could allow an auth
5.4MEDIUM
CVE-2019-1922
all versions
A vulnerability in Cisco SIP IP Phone Software for Cisco IP Phone 7800 Series and 8800 Series could allow an unauthenticated, remo
5.3MEDIUM
CVE-2019-1635
all versions
A vulnerability in the call-handling functionality of Session Initiation Protocol (SIP) Software for Cisco IP Phone 7800 Series an
7.5HIGH
CVE-2019-1684
< 12.6\(1\)mn80
A vulnerability in the Cisco Discovery Protocol or Link Layer Discovery Protocol (LLDP) implementation for the Cisco IP Phone 7800
6.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin