Yealink RPS before 2025-06-27 allows unauthorized access to information, including AutoP URL addresses. This was fixed by deploying an enhanced authentication mechanism through a security update to all cloud instances.
Metrics
Affected Vendors & Products
References
History
Sun, 21 Dec 2025 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Yealink RPS before 2025-06-27 allows unauthorized access to information, including AutoP URL addresses. This was fixed by deploying an enhanced authentication mechanism through a security update to all cloud instances. | |
| Weaknesses | CWE-290 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-12-21T03:01:54.956Z
Updated: 2025-12-21T03:53:52.235Z
Reserved: 2025-12-21T03:01:54.706Z
Link: CVE-2025-68644
No data.
Status : Received
Published: 2025-12-21T04:16:05.270
Modified: 2025-12-21T04:16:05.270
Link: CVE-2025-68644
No data.