Medium severity6.5NVD Advisory· Published Jul 29, 2025· Updated Jul 5, 2026
CVE-2025-28171
CVE-2025-28171
Description
An issue in Grandstream UCM6510 v.1.0.20.52 and before allows a remote attacker to obtain sensitive information via the Login function at /cgi and /webrtccgi.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:grandstream:ucm6510_firmware:*:*:*:*:*:*:*:*Range: <=1.0.20.52
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=1.0.20.52
Patches
Vulnerability mechanics
References
1- gist.github.com/Exek1el/a1fe4288f0df0a47068d618579c6b647nvdThird Party Advisory
News mentions
0No linked articles in our index yet.