LOW · 2.1

CVE-2024-31747

An issue in Yealink VP59 Microsoft Teams Phone firmware 91.15.0.118 (fixed in 122.15.0.142) allows a physically proximate attacker to disable the phone lock via the Walkie Talkie menu option.

Vulnerability Description

An issue in Yealink VP59 Microsoft Teams Phone firmware 91.15.0.118 (fixed in 122.15.0.142) allows a physically proximate attacker to disable the phone lock via the Walkie Talkie menu option.

CVSS Score

2.1

LOW

CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Attack Vector
PHYSICAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
YealinkVp59 Firmware>= 91.15.0.118, < 122.15.0.142

References

FAQ

What is CVE-2024-31747?

CVE-2024-31747 is a vulnerability with a CVSS score of 2.1 (LOW). An issue in Yealink VP59 Microsoft Teams Phone firmware 91.15.0.118 (fixed in 122.15.0.142) allows a physically proximate attacker to disable the phone lock via the Walkie Talkie menu option.

How severe is CVE-2024-31747?

CVE-2024-31747 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-31747?

Check the references section above for vendor advisories and patch information. Affected products include: Yealink Vp59 Firmware.