CVE-2025-52916
Yealink RPS lacks rate limiting, enabling enumeration MAC addresses
Confirmed vulnerabilities discovered and responsibly disclosed by CloudAware.
Yealink RPS lacks rate limiting, enabling enumeration MAC addresses
Yealink RPS-API lacks rate limiting, enabling enumeration of '2FA'
Yealink RPS-API authentication bypass for blocked accounts
Certificate upload function lacks input validation
Yealink leaked RSA key
Paxton license key bypass
Paxton PII leak and access control
Paxton leaked private key root cert
Yealink leaked AES key