CVE-2026-35089
Last modified
CVE-2026-35089 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. In Slican telephone exchanges secure key is generated in a predictable manner using properties of the telephone exchange which can be obtained without authentication. An unauthenticated attacker can deduce the secure key and obtain admin credentials. This issue was fixed in versions below: - IPx series: version 6.61.0040 - CCT-1668: version 6.56.0430 - MAC-6400: version 6.56.0430 - CXS-0424: version 6.30.0510 The issue STILL EXISTS in End-Of-Life telephone exchanges in versions 4.xx and below: - CCT-1668 (CCT1CPU) - MAC-6400 - CXS-0424 These products were discontinued in 2011 and 2012 and and will not receive updates. EPSS estimates a 0.59% chance of exploitation in the next 30 days.
Description
In Slican telephone exchanges secure key is generated in a predictable manner using properties of the telephone exchange which can be obtained without authentication. An unauthenticated attacker can deduce the secure key and obtain admin credentials. This issue was fixed in versions below: - IPx series: version 6.61.0040 - CCT-1668: version 6.56.0430 - MAC-6400: version 6.56.0430 - CXS-0424: version 6.30.0510 The issue STILL EXISTS in End-Of-Life telephone exchanges in versions 4.xx and below: - CCT-1668 (CCT1CPU) - MAC-6400 - CXS-0424 These products were discontinued in 2011 and 2012 and and will not receive updates. These products require a hardware update in order to receive a software update. The vendor recommends that users of these devices contact the their service department directly to determine the options for upgrading.
Metrics
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-35089?
How severe is CVE-2026-35089?
How do I fix CVE-2026-35089?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-35082The ugw-logread method allows a remote attacker with user pr…8.8
- CVE-2026-35083A remote attacker with user privileges can exploit a stack b…8.8
- CVE-2026-35084A remote attacker with user privileges can exploit a stack b…8.8
- CVE-2026-35085A remote attacker with user privileges can exploit a stack b…8.8
- CVE-2026-35086Improper Control of Generation of Code ('Code Injection') vu…6.5
- CVE-2026-35087Slican telephone exchanges allow administrative protocol aut…9.3
- CVE-2026-3509An unauthenticated remote attacker may be able to control th…7.5
- CVE-2026-35090In Slican telephone exchanges it is possible to manage the c…9.3
- CVE-2026-35091A flaw was found in Corosync. A remote unauthenticated attac…8.2
- CVE-2026-35092A flaw was found in Corosync. An integer overflow vulnerabil…7.5
- CVE-2026-35093A flaw was found in libinput. A local attacker who can place…8.8
- CVE-2026-35094A flaw was found in libinput. An attacker capable of deployi…5.5
Are you affected by CVE-2026-35089?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
