The Faste 0/0 WAN Interface has an ACL put there by CCA, usually 104.
While it allows VPN connections (if you set up the VPN Server on the UC500 - also using CCA) it blocks TELNET and SSH by not explicitly permiting those ports 23 and 22, so they fall to the deny any any (last ACL statement).
So maybe nothing to do if using CCA. If not using CCA, build one, but build it as ACL 150 or higher so if you ever do connect CCA, it will respect it.
If you are using CCA, the presence or absence of pinholes in the firewall for telnet/ssh is controlled by the Configure > Device Properties > Device Access screen. As Steve says, these default to no access.
Configure Multicast Paging on the Cisco IP Phone 7800 Series or 8800 Series Multiplatform Phone
The Cisco IP Phone 7800 and 8800 Series Multiplatform Phones provide voice communication over an Internet Protocol (IP) network...
Add Call Park on a Cisco 7800 or 8800 Series Multiplatform Phone Key Expansion Module
Call park allows the user of the phone to put an incoming call on hold so that the call can be retrieved on another phone. A call is park...