Improper Privilege Management in Alcatel-Lucent ALE NOE and SIP Deskphones
CVE-2024-29150

Currently unrated

Key Information:

Vendor
CVE Published:
7 May 2024

What is CVE-2024-29150?

Alcatel-Lucent ALE NOE and SIP deskphones have been identified with a vulnerability allowing authenticated attackers to leverage improper privilege management. This flaw enables attackers to create symbolic links to sensitive and protected data files within debugging directories. Since debugging processes are executed with root privileges, any files connected through these symbolic links can be inadvertently included in debug logs, potentially exposing sensitive information and increasing security risks for organizations utilizing these deskphones.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.