First published: Thu Apr 25 2024(Updated: )
An issue discovered in Yealink VP59 Teams Editions with firmware version 91.15.0.118 allows a physically proximate attacker to gain control of an account via a flaw in the factory reset procedure.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yealink VP59 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30939 is classified as a critical vulnerability that allows account takeover with physical proximity.
To mitigate CVE-2024-30939, ensure you update the Yealink VP59 Teams Edition firmware to the latest version that addresses this vulnerability.
CVE-2024-30939 can enable a physically proximate attacker to gain control of an account through a flaw in the factory reset process.
CVE-2024-30939 specifically affects devices running the Yealink VP59 Teams Edition firmware version 91.15.0.118.
Yes, exploiting CVE-2024-30939 requires physical access to the Yealink VP59 Teams Edition device.