Yealink Vulnerabilities and Affected Products
Vulnerabilities associated with RPS.
Products
Clear product- SIP-T46U6 vulnerabilities
- RPS5 vulnerabilities
- meeting_server3 vulnerabilities
- yealink_vp59_firmware3 vulnerabilities
- config_encrypt_tool_add_rsa1 vulnerability
- Device Management1 vulnerability
- MeetingBar A301 vulnerability
- sip-t19p-e2_firmware1 vulnerability
- SIP-T21P E21 vulnerability
- sip-t38g1 vulnerability
- w60b1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-68644HIGH | Yealink RPS before 2025-06-27 allows unauthorized access to information, including AutoP URL addresses. This was fixed by deploying an enhanced authentication mechanism through a security update to all cloud instances. CWE-290Dec 21, 2025 | CVSS7.4v3.1 | EPSS0.28% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-52917MEDIUM | The Yealink RPS API before 2025-05-26 lacks rate limiting, potentially enabling information disclosure via excessive requests. CWE-770Jun 21, 2025 | CVSS4.3v3.1 | EPSS0.267% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-52919MEDIUM | In Yealink RPS before 2025-05-26, the certificate upload function does not properly validate certificate content, potentially allowing invalid certificates to be uploaded. CWE-295Jun 21, 2025 | CVSS4.3v3.1 | EPSS0.156% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2025-52918MEDIUM | Yealink RPS before 2025-05-26 does not prevent OpenAPI access by frozen enterprise accounts, allowing unauthorized access to deactivated interfaces. CWE-863Jun 21, 2025 | CVSS5.0v3.1 | EPSS0.245% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
Yealink RPS before 2025-06-04 lacks SN verification attempt limits, enabling brute-force enumeration (last five digits). CWE-307Jun 21, 2025 | CVSS2.2v3.1 | EPSS0.25% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |