Back to Database
Status published
High
CVE-2003-0779
SQL injection vulnerability in the Call Detail Record (CDR) logging...
Vulnerability Description
SQL injection vulnerability in the Call Detail Record (CDR) logging functionality for Asterisk allows remote attackers to execute arbitrary SQL via a CallerID string.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2003-0779
Credits & Attribution
No credits recorded in the NVD database.
More from digium
View All →CVE-2022-26651
An issue was discovered in Asterisk through 19.x and Certified...
Critical
9.8
CVE-2022-26499
An SSRF issue was discovered in Asterisk through 19.x. When...
Critical
9.1
CVE-2022-26498
An issue was discovered in Asterisk through 19.x. When using...
High
7.5
CVE-2021-32558
An issue was discovered in Sangoma Asterisk 13.x before 13.38.3,...
High
7.5
CVE-2021-31878
An issue was discovered in PJSIP in Asterisk before 16.19.1...
Medium
6.5
Affected Vendor
digium
View all reports →Affected Software
asterisk
Vulnerable Versions:
0.1.7, 0.1.8, 0.1.9, 0.1.9.1, 0.2, 0.3, 0.4
Timeline
Official Publish:
September 12th, 2003
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.