Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Yealink

First CVE: Jun 16, 2014Active for: 12 yearsTotal CVEs: 24
64.8
VTI Score
TOP TARGET

Yealink manufactures a focused line of business IP telephony and communications devices, with its vulnerability footprint concentrated in a small set of widely deployed SIP phone models such as the T38G and T41P series and their firmware. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, and frequently acquire public exploit code availability, reflecting the exposed network and web-management interfaces typical of unified communications appliances. The exposure recurs through weakness classes including path traversal, OS command injection, cross-site scripting, and insecure sensitive-information storage—patterns endemic to embedded device management and call-control processing. Defenders should prioritize patch deployment for these devices in border and internal telephony networks and restrict administrative access; current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.

FAUCET AI Generated
24
Total CVEs
More Total CVEs than 97% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.3
Avg CVSS Score
Higher Avg CVSS Score than 54% of tracked vendors
4.2%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Yealink over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 16, 2014
12 years ago
Most Recent CVE
Dec 26, 2025
211 days ago

Products(31 total)

Top CVEs

Signals from CVEs in this vendor scope (24 CVEs).

24 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2021-27561CRITICAL
Yealink Device Management (DM) 3.6.0.20 allows command injection as root via the /sm/api/v1/firewall/zone/services URI, without authentication.
Oct 15, 20219.896YESYES
CVE-2013-5758HIGH
cgi-bin/cgiServer.exx in Yealink VoIP Phone SIP-T38G allows remote authenticated users to execute arbitrary commands by calling the system method in the body of a request, as demon
Aug 3, 20149.045NOYES
CVE-2013-5755HIGH
config/.htpasswd in Yealink IP Phone SIP-T38G has a hardcoded password of (1) user (s7C9Cx.rLsWFA) for the user account, (2) admin (uoCbM.VEiKQto) for the admin account, and (3) va
Jul 16, 201410.041NOYES
CVE-2025-66738HIGH
An issue in Yealink T21P_E2 Phone 52.84.0.15 allows a remote normal privileged attacker to execute arbitrary code via a crafted request the ping function of the diagnostic componen
Dec 26, 20258.831NONO
CVE-2024-33109CRITICAL
Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overwrite arbitrary files on the phone via the Ringtone upload fu
Sep 19, 20249.830NONO
CVE-2024-24681CRITICAL
An issue was discovered in Yealink Configuration Encrypt Tool (AES version) and Yealink Configuration Encrypt Tool (RSA version before 1.2). There is a single hardcoded key (used t
Feb 23, 20249.827NONO
CVE-2023-43959HIGH
An issue in YeaLinkSIP-T19P-E2 v.53.84.0.15 allows a remote privileged attacker to execute arbitrary code via a crafted request the ping function of the diagnostic component.
Oct 17, 20238.827NONO
CVE-2018-16218HIGH
A CSRF (Cross Site Request Forgery) in the web interface of the Yeahlink Ultra-elegant IP Phone SIP-T41P firmware version 66.83.0.35 allows a remote attacker to trigger code execut
May 29, 20198.827NONO
CVE-2018-16217HIGH
The network diagnostic function (ping) in the Yeahlink Ultra-elegant IP Phone SIP-T41P (firmware 66.83.0.35) allows a remote authenticated attacker to trigger OS commands or open a
May 29, 20198.827NONO
CVE-2024-24091CRITICAL
Yealink Meeting Server before v26.0.0.66 was discovered to contain an OS command injection vulnerability via the file upload interface.
Feb 8, 20249.826NONO
View all 24 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products24 CVEs
8%
25%
46%
21%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local0 (0.0%)
Network14 (58.3%)
Unknown7 (29.2%)
Physical2 (8.3%)
Adjacent Network1 (4.2%)
Attack Complexity
Low17 (70.8%)
High0 (0.0%)
Unknown7 (29.2%)
User Interaction
None15 (62.5%)
Unknown7 (29.2%)
Required2 (8.3%)
Privileges Required
Low5 (20.8%)
High0 (0.0%)
None12 (50.0%)
Unknown7 (29.2%)

Exploit Exposure

Signals from CVEs in this vendor scope (24 CVEs).

CISA KEV
1 CVE
4.2% of CVEs· 99th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
4.2% of CVEs· 95th percentile
ExploitDB
6 CVEs
25.0% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Yealink.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Yealink — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Yealink's Products

View all 1 CNAs →

Top CWEs