CVE-2020-25218: Critical severity grandstream grp2612 firmware vulnerability
Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allow Authentication Bypass in its administrative web interface.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this Grandstream VoIP phone firmware version 1.0.3.6?
The vulnerability ID for this Grandstream VoIP phone firmware version 1.0.3.6 is CVE-2020-25218.
What is the severity level of CVE-2020-25218?
The severity level of CVE-2020-25218 is critical (9.8).
How does CVE-2020-25218 affect the Grandstream GRP261x VoIP phone?
CVE-2020-25218 allows Authentication Bypass in the administrative web interface of Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base).
How can I fix CVE-2020-25218 on my Grandstream GRP261x VoIP phone?
To fix CVE-2020-25218, you should update the firmware of your Grandstream GRP261x VoIP phone to a version that addresses the vulnerability.
Where can I find more information about CVE-2020-25218?
You can find more information about CVE-2020-25218 at the following references: [link1](https://cwe.mitre.org/data/definitions/306.html), [link2](https://github.com/fireeye/Vulnerability-Disclosures/blob/master/FEYE-2021-0002/FEYE-2021-0002.md).