CVE-2020-5726 EXPLOIT
7.5
HIGH · CVSS 3.1 · EPSS 4.3% (pctl 91)
Patch early
A public exploit exists.
Description
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the CTI server on port 8888. A remote unauthenticated attacker can invoke the challenge action with a crafted username and discover user passwords.
Scoring
| CVSS | 7.5 (HIGH, v3.1) |
|---|---|
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
| EPSS | 4.33% — more likely to be exploited than 91% of all CVEs |
| Weakness | CWE-89 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2020-03-30 |
| Last modified | 2026-06-17 |
Affected (6)
| Vendor | Product |
|---|---|
| grandstream | ucm6202 |
| grandstream | ucm6202 firmware |
| grandstream | ucm6204 |
| grandstream | ucm6204 firmware |
| grandstream | ucm6208 |
| grandstream | ucm6208 firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Grandstream UCM6200 Series CTI Interface - 'user_password' SQL Injection | 2020-03-31 |
References
- http://packetstormsecurity.com/files/156977/Grandstream-UCM6200-Series-CTI-Interface-SQL-Injection.html
- https://www.tenable.com/security/research/tra-2020-17
- http://packetstormsecurity.com/files/156977/Grandstream-UCM6200-Series-CTI-Interface-SQL-Injection.html
- https://www.tenable.com/security/research/tra-2020-17
→ the Explorer · watch your stack · NVD