HIGH
Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticated users to conduct SQL injection attacks via the sord parameter in a listCodeblueGroup API call to the /cgi? URI
Published Mar 30, 2019
8.8
HIGHCVSS 3.0
EPSS 27.88%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.