High severity8.8NVD Advisory· Published May 29, 2019· Updated Jun 17, 2026
CVE-2018-16217
CVE-2018-16217
Description
The network diagnostic function (ping) in the Yeahlink Ultra-elegant IP Phone SIP-T41P (firmware 66.83.0.35) allows a remote authenticated attacker to trigger OS commands or open a reverse shell via command injection.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:yealink:ultra-elegant_ip_phone_sip-t41p_firmware:66.83.0.35:*:*:*:*:*:*:*
- Yeahlink/Ultra-elegant IP Phone SIP-T41Pdescription
Patches
Vulnerability mechanics
References
2- www.sit.fraunhofer.de/de/securitytestlab/nvdThird Party Advisory
- www.sit.fraunhofer.de/fileadmin/dokumente/CVE/Advisory_Yealink_Ultra-elegantIPPhone_SIPT41P.pdfnvdThird Party Advisory
News mentions
0No linked articles in our index yet.