CVE-2020-8887
22.09.2020, 12:15
Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker to dump database contents via the page parameter in a page=login request to index.php (aka the server login page).
| Vendor | Product | Version |
|---|---|---|
| telestream | medius | 𝑥 < 10.7.5 |
| telestream | sentry | 𝑥 < 10.7.5 |
𝑥
= Vulnerable software versions