EIP-2026-101511

PRE-CVE

Aastra IP Phone 9480i - Web Interface Data Disclosure

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-101511. PoCs published by Yakir Wizman.

AI-analyzed exploit summary This is a writeup describing a data disclosure vulnerability in Aastra IP Phone web interface, allowing unauthenticated access to SIP credentials via specific URLs. No exploit code is provided, only documentation of the issue.

Description

Aastra IP Phone 9480i - Web Interface Data Disclosure

Exploits (1)

exploitdb WRITEUP VERIFIED
by Yakir Wizman · textwebappshardware
https://www.exploit-db.com/exploits/17376

This is a writeup describing a data disclosure vulnerability in Aastra IP Phone web interface, allowing unauthenticated access to SIP credentials via specific URLs. No exploit code is provided, only documentation of the issue.

Classification
Writeup 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Aastra IP Phone 9480i
No auth needed
Prerequisites: Network access to the Aastra IP Phone web interface
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026