CVE-2018-17563
01.04.2019, 21:29
A Malformed Input String to /cgi-bin/api-get_line_status on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to dump the device's configuration in cleartext.Enginsight
Vendor | Product | Version |
---|---|---|
grandstream | gxp1610_firmware | 1.0.4.128 |
grandstream | gxp1615_firmware | 1.0.4.128 |
grandstream | gxp1620_firmware | 1.0.4.128 |
grandstream | gxp1625_firmware | 1.0.4.128 |
grandstream | gxp1628_firmware | 1.0.4.128 |
grandstream | gxp1630_firmware | 1.0.4.128 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration