CVE-2019-12327

HIGH

Akuvox R50P VoIP phone <50.0.6.156 - Info Disclosure

Title source: llm
STIX 2.1

Description

Hardcoded credentials in the Akuvox R50P VoIP phone 50.0.6.156 allow an attacker to get access to the device via telnet. The telnet service is running on port 2323; it cannot be turned off and the credentials cannot be changed.

References (1)

Core 1
Core References

Scores

CVSS v3 7.2
EPSS 0.0190
EPSS Percentile 76.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-798
Status published
Products (1)
akuvox/sp-r50p_firmware 50.0.6.156
Published Jul 22, 2019
Tracked Since Feb 18, 2026