Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2012-1417
Multiple cross-site scripting (XSS) vulnerabilities in Local Phone book and Blacklist form in Yealink VOIP Phones allow remote authenticated users to inject arbitrary web script or HTML via the user field to cgi-bin/ConfigManApp.com.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.009
EPSS Ranking
74.4%
CVSS Severity
CVSS v2 Score
3.5
References
http://archives.neohapsis.com/archives/bugtraq/2012-03/0056.html
http://packetstormsecurity.org/files/110320/yealink-xss.txt
http://secunia.com/advisories/48194
http://www.exploit-db.com/exploits/18540
http://www.osvdb.org/79675
http://www.securityfocus.com/bid/52209
https://exchange.xforce.ibmcloud.com/vulnerabilities/73573
http://archives.neohapsis.com/archives/bugtraq/2012-03/0056.html
http://packetstormsecurity.org/files/110320/yealink-xss.txt
http://secunia.com/advisories/48194
http://www.exploit-db.com/exploits/18540
http://www.osvdb.org/79675
http://www.securityfocus.com/bid/52209
https://exchange.xforce.ibmcloud.com/vulnerabilities/73573
Products affected by CVE-2012-1417
Yealink
»
Gigabit Color Ip Phone Sip-T32g
»
Version:
N/A
cpe:2.3:h:yealink:gigabit_color_ip_phone_sip-t32g:-
Yealink
»
Gigabit Color Ip Phone Sip-T38g
»
Version:
N/A
cpe:2.3:h:yealink:gigabit_color_ip_phone_sip-t38g:-
Yealink
»
Ip Phone Sip-T19p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t19p:-
Yealink
»
Ip Phone Sip-T20p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t20p:-
Yealink
»
Ip Phone Sip-T21p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t21p:-
Yealink
»
Ip Phone Sip-T22p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t22p:-
Yealink
»
Ip Phone Sip-T26p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t26p:-
Yealink
»
Ip Phone Sip-T28p
»
Version:
N/A
cpe:2.3:h:yealink:ip_phone_sip-t28p:-
Yealink
»
Ip Video Phone Vp530
»
Version:
N/A
cpe:2.3:h:yealink:ip_video_phone_vp530:-
Yealink
»
Ultra-Elegant Ip Phone Sip-T41p
»
Version:
N/A
cpe:2.3:h:yealink:ultra-elegant_ip_phone_sip-t41p:-
Yealink
»
Ultra-Elegant Ip Phone Sip-T42g
»
Version:
N/A
cpe:2.3:h:yealink:ultra-elegant_ip_phone_sip-t42g:-
Yealink
»
Ultra-Elegant Ip Phone Sip-T46g
»
Version:
N/A
cpe:2.3:h:yealink:ultra-elegant_ip_phone_sip-t46g:-
Yealink
»
Ultra-Elegant Ip Phone Sip-T48g
»
Version:
N/A
cpe:2.3:h:yealink:ultra-elegant_ip_phone_sip-t48g:-
Yealink
»
W52p
»
Version:
N/A
cpe:2.3:h:yealink:w52p:-
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved