CVE-2025-34023: Karel IP Phone IP1211 Path Traversal
A path traversal vulnerability exists in the Karel IP1211 IP Phone's web management panel. The /cgi-bin/cgiServer.exx endpoint fails to properly sanitize user input to the page parameter, allowing remote authenticated attackers to access arbitrary files on the underlying system by using crafted path traversal sequences. Exploitation evidence was observed by the Shadowserver Foundation on 2025-02-02 UTC.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-34023?
CVE-2025-34023 has been classified as a medium severity vulnerability due to its potential for unauthorized file access.
How do I fix CVE-2025-34023?
To fix CVE-2025-34023, improve input validation and sanitization in the web management panel to prevent path traversal.
What components are affected by CVE-2025-34023?
CVE-2025-34023 specifically affects the Karel IP1211 IP Phone and its web management panel.
What type of attack is CVE-2025-34023 associated with?
CVE-2025-34023 is associated with path traversal attacks that allow unauthorized access to system files.
Can attackers exploit CVE-2025-34023 without authentication?
No, attackers must be remotely authenticated to exploit CVE-2025-34023.