CVE List

CVE-2020-5761

Critical 7.5

Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to CPU exhaustion due to an infinite loop in the TR-069 service. Unauthenticated remote attackers can trigger this case by sending a one character TCP message to the TR-069 service.

Published July 29, 2020.

Affected software

Grandstream Ht802 Firmware

Grandstream Ht813 Firmware

Grandstream Ht801 Firmware

Grandstream Ht818 Firmware

Grandstream Ht814 Firmware

Grandstream Ht812 Firmware

Reference links

Sign Up for Alerts