VYPR

UM8000

by NEC

CVEs (2)

  • CVE-2019-20031Jul 29, 2020
    risk 0.00cvss epss 0.01

    NEC UM8000, UM4730 and prior non-InMail voicemail systems with all known software versions may permit an infinite number of login attempts in the telephone user interface (TUI), effectively allowing brute force attacks.

  • CVE-2019-20030Jul 29, 2020
    risk 0.00cvss epss 0.00

    An attacker with knowledge of the modem access number on a NEC UM8000 voicemail system may use SSH tunneling or standard Linux utilities to gain access to the system's LAN port. All versions are affected.