Loading
Generated remediation guidance and an executive summary. No account required.
An issue in Grandstream UCM6510 v.1.0.20.52 and before allows a remote attacker to obtain sensitive information via the Login function at /cgi and /webrtccgi.
Use CWE-922, Grandstream vendor hub and Ucm6510 Firmware product page to widen CVE-2025-28171 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-28172 for nearby disclosures in the same product family.