ZeroHour

CVE-2019-12327

PoC
CVSS 3.0
9.8 critical
EPSS
2%p79
Published
()
Modified
Description

Hardcoded credentials in the Akuvox R50P VoIP phone 50.0.6.156 allow an attacker to get access to the device via telnet. The telnet service is running on port 2323; it cannot be turned off and the credentials cannot be changed.

Vendors
akuvox
Products
sp-r50p firmware
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.