CVE-2024-30939: Medium severity yealink vp59 vulnerability
An issue discovered in Yealink VP59 Teams Editions with firmware version 91.15.0.118 allows a physically proximate attacker to gain control of an account via a flaw in the factory reset procedure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30939?
CVE-2024-30939 is classified as a critical vulnerability that allows account takeover with physical proximity.
How do I fix CVE-2024-30939?
To mitigate CVE-2024-30939, ensure you update the Yealink VP59 Teams Edition firmware to the latest version that addresses this vulnerability.
What types of attacks can CVE-2024-30939 enable?
CVE-2024-30939 can enable a physically proximate attacker to gain control of an account through a flaw in the factory reset process.
Who is affected by CVE-2024-30939?
CVE-2024-30939 specifically affects devices running the Yealink VP59 Teams Edition firmware version 91.15.0.118.
Is physical access required to exploit CVE-2024-30939?
Yes, exploiting CVE-2024-30939 requires physical access to the Yealink VP59 Teams Edition device.