ZeroHour

CVE-2020-25218

CVSS 3.1
9.8 critical
EPSS
2%p77
Published
()
Modified
Description

Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allow Authentication Bypass in its administrative web interface.

Vendors
grandstream
Products
grp2612 firmware, grp2612p firmware, grp2612w firmware, grp2613 firmware, grp2614 firmware, grp2615 firmware, grp2616 firmware
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.