Grandstream records
57 published records for vendor grandstream.
Researcher profile
- Entered KEV
- 1 · 1.8%
- Weaponized
- 5 · 8.8%
- Pre-auth RCE
- 7
- With a fix record
- 0%
- Median publish → KEV
- 676 days
Recurring classes
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')13
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')6
- CWE-121 Stack-based Buffer Overflow3
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-489 Active Debug Code2
The weakness classes this vendor ships most often: where to look.
CWEAll records
57 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
94Now | CVE-2020-5722Weaponized | The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafted HTTP request.grandstream · ucm6200 firmware · CWE-89 | Critical9.8 | KEV | 84.4% | Mar 23, 2020 |
49Plan | CVE-2026-2329Weaponized | Grandstream GXP1600 VoIP Phones - Unauthenticated stack buffer overflowgrandstream · gxp1610 firmware · CWE-121 | Critical9.3 | — | 40.6% | Feb 18, 2026 |
48Plan | CVE-2019-10662No exploit | Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the backgrandstream · ucm6204 firmware · CWE-78 | High8.8 | — | 43.9% | Mar 30, 2019 |
47Plan | CVE-2024-32937No exploit | An os command injection vulnerability exists in the CWMP SelfDefinedTimeZone functionality of Grandstream GXP2135 1.0.9.129, 1.0.11.74 and 1grandstream · gxp2135 firmware · CWE-78 | Critical9.8 | — | 26.3% | Jul 3, 2024 |
44Plan | CVE-2019-10655Weaponized | Grandstream GAC2500 1.0.3.35, GXP2200 1.0.3.27, GVC3202 1.0.3.51, GXV3275 before 1.0.3.219 Beta, and GXV3240 before 1.0.3.219 Beta devices agrandstream · gac2500 firmware · CWE-78 | Critical9.8 | — | 15.5% | Mar 30, 2019 |
43Plan | CVE-2019-10663No exploit | Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticated users to conduct SQL injection attacks via the sord parameter in a lgrandstream · ucm6204 firmware · CWE-89 | High8.8 | — | 27.9% | Mar 30, 2019 |
41Plan | CVE-2020-5757No exploit | Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP.grandstream · ucm6202 firmware · CWE-78 | Critical9.8 | — | 6.9% | Jul 17, 2020 |
41Plan | CVE-2020-5723Weaponized | The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database.grandstream · ucm6202 firmware · CWE-312 | Critical9.8 | — | 5.9% | Mar 30, 2020 |
41Plan | CVE-2022-2070Proof of concept | Grandstream GSD3710 Stack-based Buffer Overflowgrandstream · gds3710 firmware · CWE-121 | Critical9.8 | — | 5.7% | Sep 23, 2022 |
41Plan | CVE-2022-2025Proof of concept | Grandstream GSD3710 Stack-based Buffer Overflowgrandstream · gds3710 firmware · CWE-121 | Critical9.8 | — | 5.3% | Sep 23, 2022 |
41Plan | CVE-2013-3542No exploit | Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly otgrandstream · gxv3501 firmware · CWE-798 | Critical10.0 | — | 2.6% | Dec 11, 2019 |
40Plan | CVE-2020-5759No exploit | Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via SSH.grandstream · ucm6202 firmware · CWE-78 | Critical9.8 | — | 3.2% | Jul 17, 2020 |
40Plan | CVE-2018-17565No exploit | Shell Metacharacter Injection in the SSH configuration interface on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to execute argrandstream · gxp1610 firmware · CWE-78 | Critical9.8 | — | 1.9% | Apr 1, 2019 |
40Plan | CVE-2020-25218No exploit | Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allow Authentication Bypass in its administrative web interface.grandstream · grp2612 firmware · CWE-306 | Critical9.8 | — | 1.8% | Mar 29, 2021 |
40Plan | CVE-2019-10661No exploit | On Grandstream GXV3611IR_HD before 1.0.3.23 devices, the root account lacks a password.grandstream · gxv3611ir hd firmware · CWE-287 | Critical9.8 | — | 1.8% | Mar 30, 2019 |
39Monitor | CVE-2018-17564No exploit | A Malformed Input String to /cgi-bin/delete_CA on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to delete configuration parametgrandstream · gxp1610 firmware | Critical9.8 | — | 1.6% | Apr 1, 2019 |
37Monitor | CVE-2021-37748Proof of concept | Multiple buffer overflows in the limited configuration shell (/sbin/gs_config) on Grandstream HT801 devices before 1.0.29 allow remote authegrandstream · ht801 firmware · CWE-787 | High8.8 | — | 7.4% | Oct 28, 2021 |
37Monitor | CVE-2020-5738No exploit | Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker uploads a sgrandstream · gxp1610 firmware · CWE-59 | High8.8 | — | 5.4% | Apr 14, 2020 |
37Monitor | CVE-2020-5739No exploit | Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker adds an Opegrandstream · gxp1610 firmware · CWE-94 | High8.8 | — | 5.3% | Apr 14, 2020 |
36Monitor | CVE-2020-5758No exploit | Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP.grandstream · ucm6202 firmware · CWE-78 | High8.8 | — | 4.4% | Jul 17, 2020 |
36Monitor | CVE-2019-10656No exploit | Grandstream GWN7000 before 1.0.6.32 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the filengrandstream · gwn7000 firmware · CWE-78 | High8.8 | — | 3.9% | Mar 30, 2019 |
36Monitor | CVE-2020-5763No exploit | Grandstream HT800 series firmware version 1.0.17.5 and below contain a backdoor in the SSH service.grandstream · ht801 firmware · CWE-489 | High8.8 | — | 2.7% | Jul 29, 2020 |
36Monitor | CVE-2019-10658No exploit | Grandstream GWN7610 before 1.0.8.18 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the filengrandstream · gwn7610 firmware · CWE-78 | High8.8 | — | 2.6% | Mar 30, 2019 |
36Monitor | CVE-2019-10660No exploit | Grandstream GXV3611IR_HD before 1.0.3.23 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the grandstream · gxv3611ir hd firmware · CWE-78 | High8.8 | — | 2.6% | Mar 30, 2019 |
36Monitor | CVE-2019-10659No exploit | Grandstream GXV3370 before 1.0.1.41 and WP820 before 1.0.3.6 devices allow remote authenticated users to execute arbitrary code via shell megrandstream · gxv3370 firmware · CWE-78 | High8.8 | — | 2.6% | Mar 30, 2019 |
- CVE-2020-572294Now
The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafted HTTP request.
CriticalCVSS 9.8KEVWeaponizedEPSS 84%grandstream · ucm6200 firmwareMar 23, 2020
- CVE-2026-232949Plan
Grandstream GXP1600 VoIP Phones - Unauthenticated stack buffer overflow
CriticalCVSS 9.3WeaponizedEPSS 41%grandstream · gxp1610 firmwareFeb 18, 2026
- CVE-2019-1066248Plan
Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the back
HighCVSS 8.8No exploitEPSS 44%grandstream · ucm6204 firmwareMar 30, 2019
- CVE-2024-3293747Plan
An os command injection vulnerability exists in the CWMP SelfDefinedTimeZone functionality of Grandstream GXP2135 1.0.9.129, 1.0.11.74 and 1
CriticalCVSS 9.8No exploitEPSS 26%grandstream · gxp2135 firmwareJul 3, 2024
- CVE-2019-1065544Plan
Grandstream GAC2500 1.0.3.35, GXP2200 1.0.3.27, GVC3202 1.0.3.51, GXV3275 before 1.0.3.219 Beta, and GXV3240 before 1.0.3.219 Beta devices a
CriticalCVSS 9.8WeaponizedEPSS 15%grandstream · gac2500 firmwareMar 30, 2019
- CVE-2019-1066343Plan
Grandstream UCM6204 before 1.0.19.20 devices allow remote authenticated users to conduct SQL injection attacks via the sord parameter in a l
HighCVSS 8.8No exploitEPSS 28%grandstream · ucm6204 firmwareMar 30, 2019
- CVE-2020-575741Plan
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP.
CriticalCVSS 9.8No exploitEPSS 7%grandstream · ucm6202 firmwareJul 17, 2020
- CVE-2020-572341Plan
The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database.
CriticalCVSS 9.8WeaponizedEPSS 6%grandstream · ucm6202 firmwareMar 30, 2020
- CVE-2022-207041Plan
Grandstream GSD3710 Stack-based Buffer Overflow
CriticalCVSS 9.8Proof of conceptEPSS 6%grandstream · gds3710 firmwareSep 23, 2022
- CVE-2022-202541Plan
Grandstream GSD3710 Stack-based Buffer Overflow
CriticalCVSS 9.8Proof of conceptEPSS 5%grandstream · gds3710 firmwareSep 23, 2022
- CVE-2013-354241Plan
Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly ot
CriticalCVSS 10.0No exploitEPSS 3%grandstream · gxv3501 firmwareDec 11, 2019
- CVE-2020-575940Plan
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via SSH.
CriticalCVSS 9.8No exploitEPSS 3%grandstream · ucm6202 firmwareJul 17, 2020
- CVE-2018-1756540Plan
Shell Metacharacter Injection in the SSH configuration interface on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to execute ar
CriticalCVSS 9.8No exploitEPSS 2%grandstream · gxp1610 firmwareApr 1, 2019
- CVE-2020-2521840Plan
Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allow Authentication Bypass in its administrative web interface.
CriticalCVSS 9.8No exploitEPSS 2%grandstream · grp2612 firmwareMar 29, 2021
- CVE-2019-1066140Plan
On Grandstream GXV3611IR_HD before 1.0.3.23 devices, the root account lacks a password.
CriticalCVSS 9.8No exploitEPSS 2%grandstream · gxv3611ir hd firmwareMar 30, 2019
- CVE-2018-1756439Monitor
A Malformed Input String to /cgi-bin/delete_CA on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to delete configuration paramet
CriticalCVSS 9.8No exploitEPSS 2%grandstream · gxp1610 firmwareApr 1, 2019
- CVE-2021-3774837Monitor
Multiple buffer overflows in the limited configuration shell (/sbin/gs_config) on Grandstream HT801 devices before 1.0.29 allow remote authe
HighCVSS 8.8Proof of conceptEPSS 7%grandstream · ht801 firmwareOct 28, 2021
- CVE-2020-573837Monitor
Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker uploads a s
HighCVSS 8.8No exploitEPSS 5%grandstream · gxp1610 firmwareApr 14, 2020
- CVE-2020-573937Monitor
Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an attacker adds an Ope
HighCVSS 8.8No exploitEPSS 5%grandstream · gxp1610 firmwareApr 14, 2020
- CVE-2020-575836Monitor
Grandstream UCM6200 series firmware version 1.0.20.23 and below is vulnerable to OS command injection via HTTP.
HighCVSS 8.8No exploitEPSS 4%grandstream · ucm6202 firmwareJul 17, 2020
- CVE-2019-1065636Monitor
Grandstream GWN7000 before 1.0.6.32 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the filen
HighCVSS 8.8No exploitEPSS 4%grandstream · gwn7000 firmwareMar 30, 2019
- CVE-2020-576336Monitor
Grandstream HT800 series firmware version 1.0.17.5 and below contain a backdoor in the SSH service.
HighCVSS 8.8No exploitEPSS 3%grandstream · ht801 firmwareJul 29, 2020
- CVE-2019-1065836Monitor
Grandstream GWN7610 before 1.0.8.18 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the filen
HighCVSS 8.8No exploitEPSS 3%grandstream · gwn7610 firmwareMar 30, 2019
- CVE-2019-1066036Monitor
Grandstream GXV3611IR_HD before 1.0.3.23 devices allow remote authenticated users to execute arbitrary code via shell metacharacters in the
HighCVSS 8.8No exploitEPSS 3%grandstream · gxv3611ir hd firmwareMar 30, 2019
- CVE-2019-1065936Monitor
Grandstream GXV3370 before 1.0.1.41 and WP820 before 1.0.3.6 devices allow remote authenticated users to execute arbitrary code via shell me
HighCVSS 8.8No exploitEPSS 3%grandstream · gxv3370 firmwareMar 30, 2019