CVE-2020-8887

Publication date

2020-09-22 11:59:41

Family

mitre

State

PUBLISHED

Description

Telestream Tektronix Medius before 10.7.5 and Sentry before 10.7.5 have a SQL injection vulnerability allowing an unauthenticated attacker to dump database contents via the page parameter in a page=login request to index.php (aka the server login page).