Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cfmm-v9fq-4h4j

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to an OS command injection vulnerability. Unauthenticated remote attackers can execute arbitrary commands as root by crafting a special configuration file and sending a crafted SIP message.

Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to an OS command injection vulnerability. Unauthenticated remote attackers can execute arbitrary commands as root by crafting a special configuration file and sending a crafted SIP message.

EPSS

Процентиль: 88%
0.03942
Низкий

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to an OS command injection vulnerability. Unauthenticated remote attackers can execute arbitrary commands as root by crafting a special configuration file and sending a crafted SIP message.

EPSS

Процентиль: 88%
0.03942
Низкий