NA

CVE-2013-5759

Published: 03/08/2014 Updated: 07/11/2023

Vulnerability Summary

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2013-5758. Reason: This candidate is not an independent vulnerability; it is resultant from CVE-2013-5758. Notes: All CVE users should reference CVE-2013-5758 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

Exploits

Title: Yealink VoIP Phone SIP-T38G Remote Command Execution Author: MrUn1k0d3r & DorethZ10 From RingZer0 Team Vendor Homepage: wwwyealinkcom/Companyprofileaspx Version: VoIP Phone SIP-T38G CVE: CVE-2013-5758 Description: Using cgiServerexx we are able to send OS command using the system function POC: POST /cgi-bin/cgiServerex ...
Title: Yealink VoIP Phone SIP-T38G Privileges Escalation Author: MrUn1k0d3r & DorethZ10 From RingZer0 Team Vendor Homepage: wwwyealinkcom/Companyprofileaspx Version: VoIP Phone SIP-T38G CVE: CVE-2013-5759 Description: Using the fact that cgiServerexx run under the root privileges we use the command execution (CVE-2013-5758) to mo ...
Yealink VoIP phone version SIP-T38G suffers from a remote privilege escalation vulnerability that gains a root shell ...
Yealink VoIP phone version SIP-T38G suffers from a local file inclusion vulnerability ...