CVE Database
/

CVE-2020-5723

Back to search

CVE-2020-5723

Published: Mar 30, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database. This could allow an attacker to retrieve all passwords and possibly gain elevated privileges.

VendorProductVersions

n/a

Grandstream UCM6200 series

affected
1.0.20.20 and below

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now