CVE-2024-28066

I

n Unify CP IP Phone firmware 1.10.4.3, Weak Credentials are used (a hardcoded root password).

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mitel:6940w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6940w:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:mitel:6930w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6930w:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:mitel:6920w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6920w:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:mitel:6970_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6970:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:mitel:6915_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6915:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:mitel:6910_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6910:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:mitel:6905_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6905:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:mitel:openscape_cp710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp710:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:mitel:openscape_cp410_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp410:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:mitel:openscape_cp210_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp210:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:mitel:openscape_cp110_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp110:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:mitel:openscape_cpx10_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cpx10:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:mitel:openscape_dect_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_dect:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:mitel:700d_dect_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:700d_dect:-:*:*:*:*:*:*:*

History

18 Jun 2025, 19:01

Type Values Removed Values Added
First Time Mitel 6930w
Mitel 6910
Mitel openscape Dect
Mitel openscape Cp110
Mitel 6930w Firmware
Mitel openscape Cp710
Mitel 6915 Firmware
Mitel 6970
Mitel 6905 Firmware
Mitel 6940w Firmware
Mitel openscape Cp410 Firmware
Mitel 6970 Firmware
Mitel openscape Cp410
Mitel openscape Cp210
Mitel 6920w Firmware
Mitel openscape Cpx10 Firmware
Mitel 700d Dect
Mitel 6940w
Mitel 700d Dect Firmware
Mitel openscape Cp210 Firmware
Mitel openscape Cp110 Firmware
Mitel openscape Dect Firmware
Mitel openscape Cpx10
Mitel 6915
Mitel 6905
Mitel openscape Cp710 Firmware
Mitel
Mitel 6910 Firmware
Mitel 6920w
CPE cpe:2.3:h:mitel:openscape_cpx10:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_cp710_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_cp410_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6915_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:700d_dect:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6930w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6910_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_dect:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6915:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6940w:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_cpx10_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6920w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_dect_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6970:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6905:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6910:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_cp210_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:700d_dect_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6930w:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp210:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:openscape_cp110_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp110:-:*:*:*:*:*:*:*
cpe:2.3:h:mitel:6920w:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6940w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6970_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp710:-:*:*:*:*:*:*:*
cpe:2.3:o:mitel:6905_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitel:openscape_cp410:-:*:*:*:*:*:*:*
References () https://syss.de - () https://syss.de - Not Applicable
References () https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-008.txt - () https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-008.txt - Third Party Advisory, Exploit

21 Nov 2024, 09:05

Type Values Removed Values Added
References () https://syss.de - () https://syss.de -
References () https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-008.txt - () https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2024-008.txt -

15 Aug 2024, 15:35

Type Values Removed Values Added
CWE CWE-259
CWE-1391
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8