CVE-2025-68644

Yealink RPS before 2025-06-27 allows unauthorized access to information, including AutoP URL addresses. This was fixed by deploying an enhanced authentication mechanism through a security update to all cloud instances.
Configurations

No configuration.

History

21 Dec 2025, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-21 04:16

Updated : 2025-12-23 14:51


NVD link : CVE-2025-68644

Mitre link : CVE-2025-68644

CVE.ORG link : CVE-2025-68644


JSON object : View

Products Affected

No product.

CWE
CWE-290

Authentication Bypass by Spoofing