Security for everyone

CVE-2021-40856 Scanner

Detects 'Authentication Bypass' vulnerability in Auerswald COMfortel 1400 IP and 2600 IP affects v. before 2.8G.

SCAN NOW

Short Info


Level

High

Type

Single Scan

Can be used by

Asset Owner

Estimated Time

10 sec

Scan only one

Domain, Ipv4

Parent Category

CVE-2021-40856 Scanner Detail

Auerswald COMfortel 1400 IP and 2600 IP are VoIP phones designed for business use. They are equipped with a host of features that make them suitable for use in small to medium-sized business environments, such as high-quality audio, flexible configuration options, and a user-friendly interface. These devices are popular among businesses that need to communicate with customers, suppliers, and employees in different locations.

Recently, a vulnerability was detected in these devices, known as CVE-2021-40856. This vulnerability allows attackers to bypass authentication by using the /about/../ substring. This means that an attacker can gain unauthorized access to the device without needing a username or password. This vulnerability can also be exploited remotely, making it a serious threat to the security of businesses that rely on these devices.

If this vulnerability is exploited, it can lead to a number of serious consequences. For example, an attacker could use the device to make unauthorized calls, listen in on conversations, or even plant malware on the network. Additionally, an attacker could use the device as a springboard to launch further attacks against other devices on the network.

At SecurityForEveryone.com, our pro features enable you to quickly and easily identify vulnerabilities in your digital assets. Our platform scans your devices and networks for vulnerabilities, and provides you with detailed reports on any issues found. With our platform, you can rest assured that your business is protected against the latest threats, including the CVE-2021-40856 vulnerability detected in the Auerswald COMfortel 1400 IP and 2600 IP devices.

 

REFERENCES

cyber security services for everyone one. Free security tools, continuous vulnerability scanning and many more.
Try it yourself,
control security posture