CVE-2020-5722
Summary
| CVE | CVE-2020-5722 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-03-23 20:15:00 UTC |
| Updated | 2022-02-10 07:31:00 UTC |
| Description | The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafted HTTP request. An attacker can use this vulnerability to execute shell commands as root on versions before 1.0.19.20 or inject HTML in password recovery emails in versions before 1.0.20.17. |
Risk And Classification
EPSS: 0.839260000 probability, percentile 0.996650000 (date 2026-07-22)
CISA KEV: Listed on 2022-01-28; due 2022-07-28; ransomware use Unknown
Problem Types: CWE-89
CISA Known Exploited Vulnerability
| Vendor | Grandstream |
|---|---|
| Product | UCM6200 |
| Name | Grandstream Networks UCM6200 Series SQL Injection Vulnerability |
| Required Action | Apply updates per vendor instructions. |
| Notes | https://nvd.nist.gov/vuln/detail/CVE-2020-5722 |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Grandstream | Ucm6200 | - | All | All | All |
| Hardware | Grandstream | Ucm6200 | - | All | All | All |
| Operating System | Grandstream | Ucm6200 Firmware | All | All | All | All |
| Operating System | Grandstream | Ucm6200 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| UCM6202 1.0.18.13 Remote Command Injection ≈ Packet Storm | MISC | packetstormsecurity.com | Third Party Advisory |
| Grandstream UCM62xx SQL Injection - Research Advisory | Tenable® | MISC | www.tenable.com | Third Party Advisory |
| Grandstream UCM62xx IP PBX sendPasswordEmail Remote Code Execution ≈ Packet Storm | MISC | packetstormsecurity.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
| CISA Known Exploited Vulnerabilities catalog | CISA | www.cisa.gov | kev |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.