Vulnerability Description
An embedded test key and certificate could be extracted from a Poly Voice device using specialized reverse engineering tools. This extracted certificate could be accepted by a SIP service provider if the service provider does not perform proper validation of the device certificate.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-0754?
CVE-2026-0754 is a documented vulnerability. An embedded test key and certificate could be extracted from a Poly Voice device using specialized reverse engineering tools. This extracted certificate could be accepted by a SIP service provider if ...
How severe is CVE-2026-0754?
CVSS scoring is not yet available for CVE-2026-0754. Check NVD for updates.
Is there a patch for CVE-2026-0754?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.