CVE-2024-31747: Low severity yealink vp59 vulnerability
Published Apr 29, 2024
·Updated
An issue in Yealink VP59 Microsoft Teams Phone firmware 91.15.0.118 (fixed in 122.15.0.142) allows a physically proximate attacker to disable the phone lock via the Walkie Talkie menu option.
Affected Software
2 affected components
Yealink VP59 Microsoft Teams Phone
Yealink Vp59 Firmware>=91.15.0.118<122.15.0.142
Event History
Apr 29, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-31747?
CVE-2024-31747 is considered a medium severity vulnerability.
2
How do I fix CVE-2024-31747?
To fix CVE-2024-31747, update Yealink VP59 Microsoft Teams Phone firmware to version 122.15.0.142 or later.
3
What impact does CVE-2024-31747 have on the Yealink VP59 Microsoft Teams Phone?
CVE-2024-31747 allows a physically proximate attacker to disable the phone lock, potentially compromising user data.
4
Who is affected by CVE-2024-31747?
Users of Yealink VP59 Microsoft Teams Phone running firmware version 91.15.0.118 are affected by CVE-2024-31747.
5
Is CVE-2024-31747 related to physical security?
Yes, CVE-2024-31747 specifically relates to physical security, as the vulnerability can be exploited by someone who is physically near the device.