Yealink Meeting Server before V26.0.0.67 is vulnerable to sensitive data exposure in the server response via sending HTTP request with enterprise ID.
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
Link | Tags |
---|---|
http://yealink.com | product |
https://www.yealink.com/en/trust-center/security-advisories/e5c848c55b894231 | vendor advisory |