A Malformed Input String to /cgi-bin/api-get_line_status on Grandstream GXP16xx VoIP 1.0.4.128 phones allows malicious users to dump the device's configuration in cleartext.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
grandstream gxp1610_firmware 1.0.4.128 |
||
grandstream gxp1615_firmware 1.0.4.128 |
||
grandstream gxp1620_firmware 1.0.4.128 |
||
grandstream gxp1625_firmware 1.0.4.128 |
||
grandstream gxp1628_firmware 1.0.4.128 |
||
grandstream gxp1630_firmware 1.0.4.128 |