CVE-2020-27689: Imomobile Verve Connect VH510 Firmware

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

The Relish (Verve Connect) VH510 device with firmware before 1.0.1.6L0516 contains undocumented default admin credentials for the web management interface. A remote attacker could exploit this vulnerability to login and execute commands on the device, as well as upgrade the firmware image to a malicious version.

Affected products

  • Imomobile Verve Connect VH510 Firmware: before 1.0.1.6l0516 (fixed in 1.0.1.6l0516)

Published 2020-11-04. Last modified 2026-06-17.