NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the telephone user interface (TUI), effectively allowing brute force attacks.
2020-07-29T18:15:13.750
2024-11-21T04:37:56.053
Modified
CVSSv3.1: 9.1 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:N
10.0
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | nec | um8000_firmware | * | Yes |
Hardware | nec | um8000 | - | No |
Operating System | nec | um4730_firmware | * | Yes |
Hardware | nec | um4730 | - | No |