Authentication Bypass Vulnerability in Unify OpenStage/OpenScape Desk Phone IP SIP Devices
CVE-2014-2651
9.8CRITICAL
What is CVE-2014-2651?
The Unify OpenStage/OpenScape Desk Phone IP SIP devices prior to version V3 R3.11.0 are susceptible to an authentication bypass vulnerability in the default mode of the Workpoint Interface. This flaw could allow unauthorized access, enabling attackers to exploit the device functionalities without proper credentials, posing significant security risks.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved