VYPR
Unrated severityNVD Advisory· Published Sep 23, 2022· Updated May 22, 2025

Grandstream GSD3710 Stack-based Buffer Overflow

CVE-2022-2070

Description

In Grandstream GSD3710 in its 1.0.11.13 version, it's possible to overflow the stack since it doesn't check the param length before using the sscanf instruction. Because of that, an attacker could create a socket and connect with a remote IP:port by opening a shell and getting full access to the system. The exploit affects daemons dbmng and logsrv that are running on ports 8000 and 8001 by default.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Range: = 1.0.11.13
  • Grandstream/Grandstream GSD3710v5
    Range: 1.0.11.13

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.