CVE-2024-24681
23.02.2024, 23:15
An issue was discovered in Yealink Configuration Encrypt Tool (AES version) and Yealink Configuration Encrypt Tool (RSA version before 1.2). There is a single hardcoded key (used to encrypt provisioning documents) across customers' installations.Enginsight
Vendor | Product | Version |
---|---|---|
yealink | configuration_encryption_tool | 𝑥 < 1.2 |
yealink | configuration_encryption_tool | - |
𝑥
= Vulnerable software versions