RSS   Vulnerabilities for 'Ip phone sip-t26p'   RSS

2014-09-17
 
CVE-2012-1417

CWE-79
 

 
Multiple cross-site scripting (XSS) vulnerabilities in Local Phone book and Blacklist form in Yealink VOIP Phones allow remote authenticated users to inject arbitrary web script or HTML via the user field to cgi-bin/ConfigManApp.com.

 

 >>> Vendor: Yealink 19 Products
Voip phone
Voip phone firmware
Sip-t38g
Gigabit color ip phone sip-t32g
Gigabit color ip phone sip-t38g
Ip phone sip-t19p
Ip phone sip-t20p
Ip phone sip-t21p
Ip phone sip-t22p
Ip phone sip-t26p
Ip phone sip-t28p
Ip video phone vp530
Ultra-elegant ip phone sip-t41p
Ultra-elegant ip phone sip-t42g
Ultra-elegant ip phone sip-t46g
Ultra-elegant ip phone sip-t48g
W52P
Ultra-elegant ip phone sip-t41p firmware
Device management


Copyright 2024, cxsecurity.com

 

Back to Top