High severity8.8NVD Advisory· Published Apr 25, 2019· Updated Jun 17, 2026
CVE-2018-16219
CVE-2018-16219
Description
A missing password verification in the web interface in AudioCodes 405HD VoIP phone with firmware 2.2.12 allows an remote attacker (in the same network as the device) to change the admin password without authentication via a POST request.
Affected products
1- Range: = firmware 2.2.12
Patches
Vulnerability mechanics
References
1- www.sit.fraunhofer.de/fileadmin/dokumente/CVE/Advisory_AudioCodes_405HD.pdfnvdExploitMitigationThird Party Advisory
News mentions
0No linked articles in our index yet.