Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-28066


In Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).


Published

2024-04-08T13:15:08.247

Last Modified

2025-06-18T19:01:05.617

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-259
    CWE-1391

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System mitel 6940w_firmware < 1.11.3.0 Yes
Hardware mitel 6940w - No
Operating System mitel 6930w_firmware < 1.11.3.0 Yes
Hardware mitel 6930w - No
Operating System mitel 6920w_firmware < 1.11.3.0 Yes
Hardware mitel 6920w - No
Operating System mitel 6970_firmware < 1.11.3.0 Yes
Hardware mitel 6970 - No
Operating System mitel 6915_firmware < 1.11.3.0 Yes
Hardware mitel 6915 - No
Operating System mitel 6910_firmware < 1.11.3.0 Yes
Hardware mitel 6910 - No
Operating System mitel 6905_firmware < 1.11.3.0 Yes
Hardware mitel 6905 - No
Operating System mitel openscape_cp710_firmware < 1.11.3.0 Yes
Hardware mitel openscape_cp710 - No
Operating System mitel openscape_cp410_firmware < 1.11.3.0 Yes
Hardware mitel openscape_cp410 - No
Operating System mitel openscape_cp210_firmware < 1.11.3.0 Yes
Hardware mitel openscape_cp210 - No
Operating System mitel openscape_cp110_firmware < 1.11.3.0 Yes
Hardware mitel openscape_cp110 - No
Operating System mitel openscape_cpx10_firmware < 1.11.3.0 Yes
Hardware mitel openscape_cpx10 - No
Operating System mitel openscape_dect_firmware < 1.11.3.0 Yes
Hardware mitel openscape_dect - No
Operating System mitel 700d_dect_firmware < 1.11.3.0 Yes
Hardware mitel 700d_dect - No

References