Vulnerability Description
Unify OpenStage/OpenScape Desk Phone IP SIP before V3 R3.11.0 has an authentication bypass in the default mode of the Workpoint Interface
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Atos | Openstage 80 Firmware | v3 |
| Atos | Openstage 80 | - |
| Atos | Openstage 80 G Firmware | v3 |
| Atos | Openstage 80 G | - |
| Atos | Openstage 60 G Firmware | v3 |
| Atos | Openstage 60 G | - |
| Atos | Openstage 60 Firmware | v3 |
| Atos | Openstage 60 | - |
| Atos | Openstage 40 Firmware | v3 |
| Atos | Openstage 40 | - |
| Atos | Openstage 40 G Firmware | v3 |
| Atos | Openstage 40 G | - |
| Atos | Openstage 20 E Firmware | v3 |
| Atos | Openstage 20 E | - |
| Atos | Openstage 20 Firmware | v3 |
| Atos | Openstage 20 | - |
| Atos | Openstage 20 G Firmware | v3 |
| Atos | Openstage 20 G | - |
| Atos | Openstage 15 Firmware | v3 |
| Atos | Openstage 15 | - |
Related Weaknesses (CWE)
References
- http://assets.yourcircuit.com/Internet/web/Container%20Site/Misc/Footer-content/Third Party Advisory
- https://networks.unify.com/security/advisories/OBSO-1403-02.pdfVendor Advisory
- http://assets.yourcircuit.com/Internet/web/Container%20Site/Misc/Footer-content/Third Party Advisory
- https://networks.unify.com/security/advisories/OBSO-1403-02.pdfVendor Advisory
FAQ
What is CVE-2014-2651?
CVE-2014-2651 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unify OpenStage/OpenScape Desk Phone IP SIP before V3 R3.11.0 has an authentication bypass in the default mode of the Workpoint Interface
How severe is CVE-2014-2651?
CVE-2014-2651 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2014-2651?
Check the references section above for vendor advisories and patch information. Affected products include: Atos Openstage 80 Firmware, Atos Openstage 80, Atos Openstage 80 G Firmware, Atos Openstage 80 G, Atos Openstage 60 G Firmware.