Unrated severityNVD Advisory· Published Jul 8, 2015· Updated May 6, 2026
CVE-2015-2866
CVE-2015-2866
Description
SQL injection vulnerability on the Grandstream GXV3611_HD camera with firmware before 1.0.3.9 beta allows remote attackers to execute arbitrary SQL commands by attempting to establish a TELNET session with a crafted username.
Affected products
1- cpe:2.3:o:grandstream:gxv3611_hd_firmware:*:*:*:*:*:*:*:*Range: <=1.0.3.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.kb.cert.org/vuls/id/253708nvdThird Party AdvisoryUS Government Resource
- www.exploit-db.com/exploits/40441/nvd
News mentions
0No linked articles in our index yet.