EIP-2026-101511
PRE-CVEAastra IP Phone 9480i - Web Interface Data Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101511. PoCs published by Yakir Wizman.
AI-analyzed exploit summary This is a writeup describing a data disclosure vulnerability in Aastra IP Phone web interface, allowing unauthenticated access to SIP credentials via specific URLs. No exploit code is provided, only documentation of the issue.
Description
Aastra IP Phone 9480i - Web Interface Data Disclosure
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Yakir Wizman · textwebappshardware
https://www.exploit-db.com/exploits/17376
This is a writeup describing a data disclosure vulnerability in Aastra IP Phone web interface, allowing unauthenticated access to SIP credentials via specific URLs. No exploit code is provided, only documentation of the issue.
Classification
Writeup 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target:
Aastra IP Phone 9480i
No auth needed
Prerequisites:
Network access to the Aastra IP Phone web interface
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
Details
Status
pre_cve
Tracked Since
Feb 18, 2026