CVE-2019-20027

Aspire-derived NEC PBXes, including the SV8100, SV9100, SL1100 and SL2100 with software releases 7.0 or higher contain the possibility if incorrectly configured to allow a blank username and password combination to be entered as a valid, successfully authenticating account.
References
Link Resource
https://shadytel.su/files/nec_cve.txt Third Party Advisory
Configurations

Configuration 1


Information

Published : 2020-07-29 06:15

Updated : 2020-08-04 07:49


NVD link : CVE-2019-20027

Mitre link : CVE-2019-20027

Products Affected
CWE