The web interface on the central phone server for the Snom 320 SIP Phone allows remote attackers to make arbitrary phone calls via the "Call a number" field. NOTE: this might overlap CVE-2007-3440.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/41171http://www.securityfocus.com/archive/1/489009/100/0/threadedhttp://www.gnucitizen.org/projects/router-hacking-challenge/