Gxv3611ir Hd Firmware
by Grandstream
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2019-10661 | Cri | 0.64 | 9.8 | 0.02 | Mar 30, 2019 | On Grandstream GXV3611IR_HD before 1.0.3.23 devices, the root account lacks a password. | ||
| CVE-2019-10660 | Hig | 0.57 | 8.8 | 0.03 | Mar 30, 2019 | Grandstream GXV3611IR_HD before 1.0.3.23 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the /goform/systemlog?cmd=set logserver field. |
- risk 0.64cvss 9.8epss 0.02
On Grandstream GXV3611IR_HD before 1.0.3.23 devices, the root account lacks a password.
- risk 0.57cvss 8.8epss 0.03
Grandstream GXV3611IR_HD before 1.0.3.23 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the /goform/systemlog?cmd=set logserver field.