CVE-2020-24551: Iproom Mmc+

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

IProom MMC+ Server login page does not validate specific parameters properly. Attackers can use the vulnerability to redirect to any malicious site and steal the victim's login credentials.

Affected products

  • Iproom Mmc+: version 3.2.2 only

Published 2020-10-14. Last modified 2026-06-17.