Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to an OS command injection vulnerability. Unauthenticated remote attackers can execute arbitrary commands as root by crafting a special configuration file and sending a crafted SIP message.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
Grandstream HT800 series 操作系统命令注入漏洞
Vulnerability Description
Grandstream HT800 series是美国潮流网络(Grandstream)公司的一款HT800系列模拟电话适配器。 使用1.0.17.5及之前版本固件的Grandstream HT800 series中存在操作系统命令注入漏洞漏洞。远程攻击者可通过创建配置文件并发送特制的SIP消息利用该漏洞以root用户身份执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A