Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2015-8251


OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone IP 55G HFA V3, OpenStage 15, 20E, 20, and 40 and OpenScape Desk Phone IP 35G HFA V3, and OpenScape Desk Phone IP 35G Eco HFA V3 use non-unique X.509 certificates and SSH host keys.


Published

2017-09-25T21:29:00.913

Last Modified

2025-04-20T01:37:25.860

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 5.9 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:N/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: NONE
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-200

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System unify openstage_60_firmware 3.0 Yes
Hardware unify openstage_60 - No
Operating System unify openscape_desk_phone_ip_55g_sip_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_55g_sip - No
Operating System unify openstage_15_firmware 3.0 Yes
Hardware unify openstage_15 - No
Operating System unify openstage_20e_firmware 3.0 Yes
Hardware unify openstage_20e - No
Operating System unify openstage_20_firmware 3.0 Yes
Hardware unify openstage_20 - No
Operating System unify openstage_40_firmware 3.0 Yes
Hardware unify openstage_40 - No
Operating System unify openscape_desk_phone_ip_35g_sip_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_35g_sip - No
Operating System unify openscape_desk_phone_ip_35g_eco_sip_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_35g_eco_sip - No
Operating System unify openscape_desk_phone_ip_55g_hfa_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_55g_hfa - No
Operating System unify openscape_desk_phone_ip_35g_hfa_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_35g_hfa - No
Operating System unify openstage_60_firmware 3.0 Yes
Hardware unify openscape_desk_phone_ip_35g_eco_hfa - No

References