VYPR
High severity7.5NVD Advisory· Published Sep 22, 2020· Updated Jun 17, 2026

CVE-2020-8887

CVE-2020-8887

Description

Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker to dump database contents via the page parameter in a page=login request to index.php (aka the server login page).

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Telestream Tektronix/Mediuscpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <10.7.5
  • cpe:2.3:a:telestream:medius:*:*:*:*:*:*:*:*
    Range: <10.7.5
  • Telestream/Sentry2 versions
    cpe:2.3:a:telestream:sentry:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:telestream:sentry:*:*:*:*:*:*:*:*range: <10.7.5
    • (no CPE)range: <10.7.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.