CVE-2020-12798: Sun-Denshi Universal Forensic Extraction Device Firmware

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Cellebrite UFED 5.0 to 7.5.0.845 implements local operating system policies that can be circumvented to obtain a command prompt via the Windows file dialog that is reachable via the Certificate-Based Authentication option of the Wireless Network Connection screen.

Affected products

  • Sun-Denshi Universal Forensic Extraction Device Firmware: from 5.0, up to and including 7.5.0.845

Published 2020-05-15. Last modified 2026-06-17.