CVE Database
/

CVE-2019-5280

Back to search

CVE-2019-5280

Published: Aug 13, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

The SIP TLS module of Huawei CloudLink Phone 7900 with V600R019C10 has a TLS certificate verification vulnerability. Due to insufficient verification of specific parameters of the TLS server certificate, attackers can perform man-in-the-middle attacks, leading to the affected phones registered abnormally, affecting the availability of IP phones.

VendorProductVersions

Huawei

CloudLink Phone 7900

affected
V600R019C10

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now