CVE-2019-20033

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
29/07/2020
Last modified:
21/07/2021

Description

On Aspire-derived NEC PBXes, including all versions of SV8100 devices, a set of documented, static login credentials may be used to access the DIM interface.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:nec:sv8100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:nec:sv8100:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools