A vulnerability in the certificate handling component of the Cisco SPA112, SPA525, and SPA5X5 Series IP Phones could allow an unauthenticated, remote attacker to listen to or control some aspects of a Transport Level Security (TLS)-encrypted Session Initiation Protocol (SIP) conversation. The vulnerability is due to the improper validation of server certificates. An attacker could exploit this vulnerability by crafting a malicious server certificate to present to the client. An exploit could allow an attacker to eavesdrop on TLS-encrypted traffic and potentially route or redirect calls initiated by an affected device. Affected software include version 7.6.2 of the Cisco Small Business SPA525 Series IP Phones and Cisco Small Business SPA5X5 Series IP Phones and version 1.4.2 of the Cisco Small Business SPA500 Series IP Phones and Cisco Small Business SPA112 Series IP Phones.
Conclusion & alert: CVE-2019-1683 is rated Moderate Risk (49.2/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.87%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.16% | 0.87% | +0.72% |
| 2 | 2025-03-17 | 0.13% | 0.16% | +0.03% |
| 3 | 2025-02-04 | — | 0.13% | — |
Full EPSS history (10 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.4 | 3.1 | HIGH |
|
2.2 | 5.2 | [email protected] |
| 6.5 | 3.0 | MEDIUM |
|
2.2 | 4.2 | [email protected] |
| 5.8 | 2.0 | MEDIUM |
|
8.6 | 4.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| cisco | spa112_firmware | 1.4.2 | cpe:2.3:o:cisco:spa112_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa525_firmware | 7.6.2 | cpe:2.3:o:cisco:spa525_firmware:7.6.2:*:*:*:*:*:*:* |
| cisco | spa5x5_firmware | 7.6.2 | cpe:2.3:o:cisco:spa5x5_firmware:7.6.2:*:*:*:*:*:*:* |
| cisco | spa500_firmware | 1.4.2 | cpe:2.3:o:cisco:spa500_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa500s_firmware | 1.4.2 | cpe:2.3:o:cisco:spa500s_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa500ds_firmware | 1.4.2 | cpe:2.3:o:cisco:spa500ds_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa501g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa501g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa502g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa502g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa504g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa504g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa508g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa508g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa509g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa509g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa512g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa512g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa514g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa514g_firmware:1.4.2:*:*:*:*:*:*:* |
| cisco | spa525g_firmware | 1.4.2 | cpe:2.3:o:cisco:spa525g_firmware:1.4.2:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| http://www.securityfocus.com/bid/107111 | Broken Link Third Party Advisory VDB Entry |
| https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190220-ipphone-certs | Vendor Advisory |