Skip to content

Known CVE

YeaLink DM 3.6.0.20 - Remote Command Injection

Yealink Device Management (DM) 3.6.0.20 allows command injection as root via the /sm/api/v1/firewall/zone/services URI, without authentication.

CVE-2021-27561

Critical2021CVSS 9.8CWE-78

cve2021 · rce · yealink · mirai · kev · vkev · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website