MEDIUM · 5.9

CVE-2015-8251

OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone ...

Vulnerability Description

OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone IP 55G HFA V3, OpenStage 15, 20E, 20, and 40 and OpenScape Desk Phone IP 35G HFA V3, and OpenScape Desk Phone IP 35G Eco HFA V3 use non-unique X.509 certificates and SSH host keys.

CVSS Score

5.9

MEDIUM

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
UnifyOpenstage 60 Firmware3.0
UnifyOpenstage 60-
UnifyOpenscape Desk Phone Ip 55G Sip Firmware3.0
UnifyOpenscape Desk Phone Ip 55G Sip-
UnifyOpenstage 15 Firmware3.0
UnifyOpenstage 15-
UnifyOpenstage 20E Firmware3.0
UnifyOpenstage 20E-
UnifyOpenstage 20 Firmware3.0
UnifyOpenstage 20-
UnifyOpenstage 40 Firmware3.0
UnifyOpenstage 40-
UnifyOpenscape Desk Phone Ip 35G Sip Firmware3.0
UnifyOpenscape Desk Phone Ip 35G Sip-
UnifyOpenscape Desk Phone Ip 35G Eco Sip Firmware3.0
UnifyOpenscape Desk Phone Ip 35G Eco Sip-
UnifyOpenscape Desk Phone Ip 55G Hfa Firmware3.0
UnifyOpenscape Desk Phone Ip 55G Hfa-
UnifyOpenscape Desk Phone Ip 35G Hfa Firmware3.0
UnifyOpenscape Desk Phone Ip 35G Hfa-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-8251?

CVE-2015-8251 is a vulnerability with a CVSS score of 5.9 (MEDIUM). OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone ...

How severe is CVE-2015-8251?

CVE-2015-8251 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-8251?

Check the references section above for vendor advisories and patch information. Affected products include: Unify Openstage 60 Firmware, Unify Openstage 60, Unify Openscape Desk Phone Ip 55G Sip Firmware, Unify Openscape Desk Phone Ip 55G Sip, Unify Openstage 15 Firmware.