ZeroHour

CVE-2020-25217

CVSS 3.1
7.2 high
EPSS
2%p83
Published
()
Modified
Description

Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allows Command Injection as root in its administrative web interface.

Vendors
grandstream
Products
grp2612 firmware, grp2612p firmware, grp2612w firmware, grp2613 firmware, grp2614 firmware, grp2615 firmware, grp2616 firmware
Weakness
CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.