- How many CVEs does Yealink have?
- Yealink has 37 published CVE records since 2014, including 15 in the last two years.
- How many Yealink CVEs are in CISA KEV?
- Yes — 1 of Yealink's CVEs are listed in CISA's Known Exploited Vulnerabilities catalog, confirmed exploited in the wild and carrying a CISA remediation deadline.
- Which Yealink products have the most CVEs?
- The Yealink products with the most published CVEs are SIP-T46U, RPS, ultra-elegant ip phone sip-t41p, sip-t38g, vp59 firmware.
- What are the most common weakness types in Yealink CVEs?
- Yealink's CVEs most often map to these CWE weakness types: CWE-77 (Improper Neutralization of Special Elements used in a Command ('Command Injection')), CWE-121 (Stack-based Buffer Overflow), CWE-922 (Insecure Storage of Sensitive Information), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')).
- Are there public exploits for Yealink vulnerabilities?
- Yes — 23 of Yealink's CVEs have a known public exploit.
- How many critical Yealink vulnerabilities are there?
- Yealink has 7 critical and 14 high-severity CVEs.
- What is the average severity of Yealink CVEs?
- The average CVSS base score across Yealink's scored CVEs is 6.8.