Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2025-66738 An issue in Yealink T21P_E2 Phone 52.84.0.15 allows a remote normal privileged attacker to execute arbitrary code via a crafted request the ping func… Sip T21\(p\)e2 Firmware No fix yet Fix from $1,9502025-12-26 MEDIUM 6.8 CVE-2024-30939 An issue discovered in Yealink VP59 Teams Editions with firmware version 91.15.0.118 allows a physically proximate attacker to gain control of an acc… Vp59 Firmware No fix yet Fix from $1,6002024-04-25 HIGH 7.5 CVE-2024-28442 Directory Traversal vulnerability in Yealink VP59 v.91.15.0.118 allows a physically proximate attacker to obtain sensitive information via terms of u… Vp59 Firmware No fix yet Fix from $1,9502024-03-26 HIGH 8.8 CVE-2023-43959 An issue in YeaLinkSIP-T19P-E2 v.53.84.0.15 allows a remote privileged attacker to execute arbitrary code via a crafted request the ping function of … Sip T19p E2 Firmware No fix yet Fix from $1,9502023-10-17 CRITICAL 9.1 CVE-2020-24113 Directory Traversal vulnerability in Contacts File Upload Interface in Yealink W60B version 77.83.0.85, allows attackers to gain sensitive informatio… W60b Firmware Mitigation only Fix from $2,3002023-08-22 HIGH 8.8 CVE-2018-16217 The network diagnostic function (ping) in the Yeahlink Ultra-elegant IP Phone SIP-T41P (firmware 66.83.0.35) allows a remote authenticated attacker t… Ultra Elegant Ip Phone Sip T41p Firmware Mitigation only Fix from $1,9502019-05-29 HIGH 8.8 CVE-2018-16218 A CSRF (Cross Site Request Forgery) in the web interface of the Yeahlink Ultra-elegant IP Phone SIP-T41P firmware version 66.83.0.35 allows a remote … Ultra Elegant Ip Phone Sip T41p Firmware No fix yet Fix from $1,9502019-05-29 HIGH 8.0 CVE-2018-16221 The diagnostics web interface in the Yeahlink Ultra-elegant IP Phone SIP-T41P (firmware 66.83.0.35) does not validate (escape) the path information (… Ultra Elegant Ip Phone Sip T41p Firmware Mitigation only Fix from $1,9502019-05-29 HIGH 9.0 CVE-2013-5758EPSS 12% cgi-bin/cgiServer.exx in Yealink VoIP Phone SIP-T38G allows remote authenticated users to execute arbitrary commands by calling the system method in … Sip T38g No fix yet Fix from $1,9502014-08-03 HIGH 10.0 CVE-2013-5755 config/.htpasswd in Yealink IP Phone SIP-T38G has a hardcoded password of (1) user (s7C9Cx.rLsWFA) for the user account, (2) admin (uoCbM.VEiKQto) fo… Sip T38g Mitigation only Fix from $1,9502014-07-16 MEDIUM 5.0 CVE-2014-3427EPSS 5% CRLF injection vulnerability in Yealink VoIP Phones with firmware 28.72.0.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP… Voip Phone Firmware No fix yet Fix from $1,6002014-07-16