vendor:
SIP-TxxP
by:
b0hr (francisco<[at]>garnelo.eu)
7,5
CVSS
HIGH
Phone Call Vulnerability
284
CWE
Product Name: SIP-TxxP
Affected Version From: 9.70.0.100 and lower
Affected Version To: 9.70.0.100 and lower
Patch Exists: YES
Related CWE: N/A
CPE: h:yealink:sip-txxp
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: YeaLink IP Phone SIP-T20P and SIP-T26P (hardware VoIP phone)
2013
YeaLink IP Phone SIP-TxxP firmware <=9.70.0.100 phone call vulnerability
It is possible to make calls from using the first available sip account, without supervision or confirmation of the user, also the call receiver can listen through the phone mic.
Mitigation:
Ensure that all users are authenticated before allowing them to make calls from the IP phone.