CVE-2015-8251

UnknownEPSS 1.31%

Last modified

CVE-2015-8251 is a vulnerability of currently unknown severity. OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone IP 55G HFA V3, OpenStage 15, 20E, 20, and 40 and OpenScape Desk Phone IP 35G HFA V3, and OpenScape Desk Phone IP 35G Eco HFA V3 use non-unique X.509 certificates and SSH host keys.. EPSS estimates a 1.31% chance of exploitation in the next 30 days.

Description

OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone IP 55G HFA V3, OpenStage 15, 20E, 20, and 40 and OpenScape Desk Phone IP 35G HFA V3, and OpenScape Desk Phone IP 35G Eco HFA V3 use non-unique X.509 certificates and SSH host keys.

Metrics

EPSS Probability
1.31%

67.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
UnifyOpenstage 60 Firmware3.0
UnifyOpenscape Desk Phone Ip 55g Sip Firmware3.0
UnifyOpenstage 15 Firmware3.0
UnifyOpenstage 20e Firmware3.0
UnifyOpenstage 20 Firmware3.0
UnifyOpenstage 40 Firmware3.0
UnifyOpenscape Desk Phone Ip 35g Sip Firmware3.0
UnifyOpenscape Desk Phone Ip 35g Eco Sip Firmware3.0
UnifyOpenscape Desk Phone Ip 55g Hfa Firmware3.0
UnifyOpenscape Desk Phone Ip 35g Hfa Firmware3.0

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2015-8251?
OpenStage 60 and OpenScape Desk Phone IP 55G SIP V3, OpenStage 15, 20E, 20 and 40 and OpenScape Desk Phone IP 35G SIP V3, OpenScape Desk Phone IP 35G Eco SIP V3, OpenStage 60 and OpenScape Desk Phone IP 55G HFA V3, OpenStage 15, 20E, 20, and 40 and OpenScape Desk Phone IP 35G HFA V3, and OpenScape Desk Phone IP 35G Eco HFA V3 use non-unique X.509 certificates and SSH host keys.
How severe is CVE-2015-8251?
Severity scoring for CVE-2015-8251 is pending analysis. The EPSS model estimates a 1.31% probability of exploitation in the next 30 days.
How do I fix CVE-2015-8251?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2015-8251?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST