PT-2021-21859 · Grandstream · Grandstream Ht801

Adam Simuntis

+1

·

Published

2021-10-27

·

Updated

2021-11-03

·

CVE-2021-37748

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Grandstream HT801 versions prior to 1.0.29
Description: The issue is related to multiple buffer overflows in the limited configuration shell (/sbin/gs config) that allow remote authenticated users to execute arbitrary code as root via a crafted manage if setting. This bypasses the intended restrictions of the shell, allowing full control of the device. Default weak credentials can be used to authenticate.
Recommendations: For versions prior to 1.0.29, update to version 1.0.29 or later to resolve the issue. As a temporary workaround, consider changing the default weak credentials to strong ones and restricting access to the /sbin/gs config shell until the update can be applied.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-37748

Affected Products

Grandstream Ht801