Remote Code Execution Vulnerability in Yealink T21P_E2 Phone
CVE-2025-66738
6.5MEDIUM
What is CVE-2025-66738?
The Yealink T21P_E2 Phone version 52.84.0.15 is susceptible to a remote code execution vulnerability that enables an attacker with normal privileges to execute arbitrary code. This issue arises through the ping function of the diagnostic component, which can be exploited via specially crafted requests. It is crucial for users of this device to ensure they apply available patches and follow recommended security practices to safeguard their systems.
