VYPR

Ht801 Firmware

by Grandstream

CVEs (6)

  • CVE-2021-37748HigOct 28, 2021
    risk 0.58cvss 8.8epss 0.07

    Multiple buffer overflows in the limited configuration shell (/sbin/gs_config) on Grandstream HT801 devices before 1.0.29 allow remote authenticated users to execute arbitrary code as root via a crafted manage_if setting, thus bypassing the intended restrictions of this shell…

  • CVE-2021-37915HigOct 28, 2021
    risk 0.57cvss 8.8epss 0.02

    An issue was discovered on the Grandstream HT801 Analog Telephone Adaptor before 1.0.29.8. From the limited configuration shell, it is possible to set the malicious gdb_debug_server variable. As a result, after a reboot, the device downloads and executes malicious scripts from…

  • CVE-2020-5763HigJul 29, 2020
    risk 0.57cvss 8.8epss 0.03

    Grandstream HT800 series firmware version 1.0.17.5 and below contain a backdoor in the SSH service. An authenticated remote attacker can obtain a root shell by correctly answering a challenge prompt.

  • CVE-2020-5760HigJul 29, 2020
    risk 0.51cvss 7.8epss 0.05

    Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to an OS command injection vulnerability. Unauthenticated remote attackers can execute arbitrary commands as root by crafting a special configuration file and sending a crafted SIP message.

  • CVE-2020-5762HigJul 29, 2020
    risk 0.49cvss 7.5epss 0.03

    Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to a denial of service attack against the TR-069 service. An unauthenticated remote attacker can stop the service due to a NULL pointer dereference in the TR-069 service. This condition is triggered due…

  • CVE-2020-5761HigJul 29, 2020
    risk 0.49cvss 7.5epss 0.04

    Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to CPU exhaustion due to an infinite loop in the TR-069 service. Unauthenticated remote attackers can trigger this case by sending a one character TCP message to the TR-069 service.