CVE-2023-22957 (405hd_firmware, 445hd_firmware, c435hd_firmware, c450hd_firmware, c455hd_firmware, c470hd_firmware)

An issue was discovered in libac_des3.so on AudioCodes VoIP desk phones through 3.4.4.1000. Due to the use of hard-coded cryptographic key, an attacker with access to backup or configuration files is able to decrypt encrypted values and retrieve sensitive information, e.g., the device root password.Read More