← Vulnerability feed

Vulnerability record · CVE-2002-0881 · published 4 October 2002

CVE-2002-0881: Cisco voip phone cp-7940 vulnerability

Cisco · Voip Phone Cp 7940

Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings.

2.1 CVSS 2.0 Low EPSS 0.39% · top 69.0%
2.1CVSS 2.0 base score
0.39%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
8References
16 Jun 2026Last modified by NVD

Description

Cisco IP Phone (VoIP) models 7910, 7940, and 7960 use a default administrative password, which allows attackers with physical access to the phone to modify the configuration settings.

AV:L/AC:L/Au:N/C:N/I:P/A:N

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-0881 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.1CVE-2007-4459Cisco voip phone cp-7940 improper input validation vulnerabilityCisco IP Phone 7940 and 7960 with P0S3-08-6-00 firmware, and other SIP firmware before 8.7(0), allows remote attackers to cause a denial of service (…EPSS 14%6.8CVE-2012-5445Cisco skinny client control protocol software improper input validation vulnerabilityThe kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properl…EPSS 0.40%6.6CVE-2011-1602Cisco unified ip phone 7906 permissions and access controls vulnerabilityThe su utility on Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.0.3 allows local users to gain privileges via unspecif…EPSS 0.26%6.6CVE-2011-1603Cisco unified ip phone 7906 permissions and access controls vulnerabilityCisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bu…EPSS 0.26%6.4CVE-2002-0882Cisco voip phone cp-7940 vulnerabilityThe web server for Cisco IP Phone (VoIP) models 7910, 7940, and 7960 allows remote attackers to cause a denial of service (reset) and possibly read s…EPSS 2.7%6.1CVE-2018-15434Cisco skinny client control protocol software cross-site scripting vulnerabilityA vulnerability in the web-based management interface of Cisco Unified IP Phone 7900 Series could allow an unauthenticated, remote attacker to conduc…EPSS 0.92%5.0CVE-2002-0880Cisco voip phone cp-7940 vulnerabilityCisco IP Phone (VoIP) models 7910, 7940, and 7960 allow remote attackers to cause a denial of service (crash) via malformed packets as demonstrated b…EPSS 1.3%1.5CVE-2011-1637Cisco unified ip phone 7906 permissions and access controls vulnerabilityCisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 do not properly verify signatures for software images, which allows …EPSS 0.27%

Source: NIST National Vulnerability Database (record CVE-2002-0881), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.