Yealink Config Encrypt Tool add RSA before 1.2 has a built-in RSA key pair, and thus there is a risk of decryption by an adversary.
References
Configurations
History
No history.
Information
Published : 2024-02-20 00:15
Updated : 2025-08-26 14:36
NVD link : CVE-2022-48625
Mitre link : CVE-2022-48625
CVE.ORG link : CVE-2022-48625
JSON object : View
Products Affected
yealink
- configuration_encryption_tool
CWE
CWE-321
Use of Hard-coded Cryptographic Key
