Unrated severityNVD Advisory· Published Jul 12, 2026· Updated Jul 14, 2026
Eleveo Call Recording Software Recorded Calls restoreCallAction.do improper authorization
CVE-2026-15473
Description
A vulnerability was identified in Eleveo Call Recording Software 9.7.0. This issue affects some unknown processing of the file /callrec/restoreCallAction.do of the component Recorded Calls Page. The manipulation leads to improper authorization. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected products
1- Range: =9.7.0
Patches
Vulnerability mechanics
References
5- github.com/omarelshopky/cves/tree/main/eleveo/call-recording-software/CVE-2026-15473mitreexploit
- vuldb.com/cve/CVE-2026-15473mitrethird-party-advisory
- vuldb.com/submit/797466mitrethird-party-advisory
- vuldb.com/vuln/377778mitrevdb-entry
- vuldb.com/vuln/377778/ctimitresignaturepermissions-required
News mentions
0No linked articles in our index yet.