CVE Browser
CVE-2019-14657 HIGH
Yealink phones through 2019-08-04 have an issue with OpenVPN file upload. They execute tar as root to extract files, but do not validate the extraction directo…
CVSS 8.8 EPSS 3.74% Oct 8, 2019
CVE-2019-14656 HIGH
Yealink phones through 2019-08-04 do not properly check user roles in POST requests. Consequently, the default User account (with a password of user) can make…
CVSS 8.8 EPSS 1.98% Oct 8, 2019
Showing 1 to 2 CVEs · page 1