CVE-2020-5722 | Grandstream UCM6200 up to 1.0.19.19 HTTP Interface HTTP Request sql injection (ID 156876 / EDB-48247)
A vulnerability was found in Grandstream UCM6200 up to 1.0.19.19. It has been classified as critical. Affected is an unknown function of the component HTTP Interface. The manipulation as part of HTTP Request leads to sql injection.
This vulnerability is traded as CVE-2020-5722. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.