Skip to content
COOEY

EXPOSURES › CVE-2024-33109

CVE-2024-33109

CRITICAL
DETAIL
SourceNVD · cve Published2024-09-19 CVSS9.9 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2024-33109 ↗
SHAME 35/100

Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overwrite arbitrary files on the phone via the Ringtone upload function.

▸ RECOMMENDED ACTION  Critical severity — schedule patching of the affected products.

DESCRIPTION

Directory Traversal in the web interface of the Tiptel IP 286 with firmware version 2.61.13.10 allows attackers to overwrite arbitrary files on the phone via the Ringtone upload function.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.