Critical severity9.1NVD Advisory· Published Jul 29, 2020· Updated Jun 17, 2026
CVE-2019-20031
CVE-2019-20031
Description
NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the telephone user interface (TUI), effectively allowing brute force attacks.
Affected products
5- cpe:2.3:o:nec:um4730_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:nec:um8000_firmware:*:*:*:*:*:*:*:*
- NEC/UM8000, UM4730 and prior non-InMail voicemail systemsdescription
Patches
Vulnerability mechanics
References
1- shadytel.su/files/nec_cve.txtnvdThird Party Advisory
News mentions
0No linked articles in our index yet.