Impact
A flaw in Eleveo Call Recording Software 9.7.0 allows an attacker to modify the callId parameter in the /callrec/audio.jsp endpoint, bypassing the expected authorization checks and granting access to protected audio recordings. The vulnerability directly compromises the confidentiality of recorded calls, as attackers can retrieve private audio data without any valid credentials. The flaw is categorized by CWE-266 and CWE-285 and carries a CVSS score of 5.3, indicating moderate severity.
Affected Systems
Eleveo Call Recording Software version 9.7.0 is affected. The vulnerability resides in the Call Recording Handler component accessed via /callrec/audio.jsp. No other versions are identified as vulnerable in the supplied data.
Risk and Exploitability
The vulnerability can be exploited remotely by crafting requests that manipulate the callId query parameter. Although the publicly released exploit is available, the EPSS score of less than 1% suggests that automated exploitation is currently unlikely. The flaw is not listed in the CISA KEV catalog, but the existence of a public exploit and the low effort required to bypass authorization make the risk of unauthorized data disclosure real if the vulnerable version remains in use.
OpenCVE Enrichment