ZeroHour

CVE-2024-24091

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

Yealink Meeting Server before v26.0.0.66 was discovered to contain an OS command injection vulnerability via the file upload interface.

Vendors
yealink
Products
yealink meeting server
Weakness
CWE-78, CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.