audiocodes
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting audiocodes.
- CVE-2025-34335AudioCodes Fax/IVR Appliance <= 2.6.23 Authenticated Command Injection via ActivateLicense.php8.8
- CVE-2025-34334AudioCodes Fax/IVR Appliance <= 2.6.23 Authenticated Command Injection via TestFax.php & LPE8.8
- CVE-2025-34332AudioCodes Fax/IVR Appliance <= 2.6.23 Insecure Service Control Scripts LPE7.8
- CVE-2025-34329AudioCodes Fax/IVR Appliance <= 2.6.23 Unauthenticated Backup Upload RCE via ajaxBackupUploadFile.php9.8
- CVE-2025-34331AudioCodes Fax/IVR Appliance <= 2.6.23 Unauthenticated File Read via download.php7.5
- CVE-2025-34328AudioCodes Fax/IVR Appliance <= 2.6.23 Unauthenticated File Upload RCE via ajaxScript.php9.8
- CVE-2025-34330AudioCodes Fax/IVR Appliance <= 2.6.23 Unauthenticated Prompt File Upload via ajaxPromptUploadFile.php5.3
- CVE-2025-34333AudioCodes Fax/IVR Appliance <= 2.6.23 World-Writable Webroot LPE7.8
- CVE-2025-32106In Audiocodes Mediapack MP-11x through 6.60A.369.002, a crafted POST request request may result in an unauthenticated remote user's ability to execute unauthorized code.9.8
- CVE-2024-52884An issue was discovered in AudioCodes Mediant Session Border Controller (SBC) before 7.40A.501.841. Due to the use of weak password obfuscation/encryption, an attacker with access to configuration ...7.5
- CVE-2024-52883An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to a path traversal vulnerability, sensitive data can be read without any authentication.7.5
- CVE-2024-52882An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript cod...6.1
- CVE-2024-52881An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to the use of a hard-coded key, an attacker is able to decrypt sensitive data such as passwords extracte...7.5
- CVE-2023-22957An issue was discovered in libac_des3.so on AudioCodes VoIP desk phones through 3.4.4.1000. Due to the use of hard-coded cryptographic key, an attacker with access to backup or configuration files ...7.5
- CVE-2023-22956An issue was discovered on AudioCodes VoIP desk phones through 3.4.4.1000. Due to the use of a hard-coded cryptographic key, an attacker is able to decrypt encrypted configuration files and retriev...7.5