2024-02-24 00:55:27 +00:00

20 lines
707 B
JSON

{
"id": "CVE-2024-24681",
"sourceIdentifier": "cve@mitre.org",
"published": "2024-02-23T23:15:09.687",
"lastModified": "2024-02-23T23:15:09.687",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "Insecure AES key in Yealink Configuration Encrypt Tool below verrsion 1.2. A single, vendorwide, hardcoded AES key in the configuration tool used to encrypt provisioning documents was leaked leading to a compromise of confidentiality of provisioning documents."
}
],
"metrics": {},
"references": [
{
"url": "https://www.reddit.com/r/VOIP/comments/ys9mel/what_are_some_of_the_good_white_label_voip/",
"source": "cve@mitre.org"
}
]
}