Potential Code Execution Risk in Grandstream Wave for Android
CVE-2016-1520
7.8HIGH
What is CVE-2016-1520?
The Grandstream Wave app for Android, specifically version 1.0.1.26 and earlier, is susceptible to vulnerabilities due to the lack of HTTPS for update information retrieval. This oversight allows potential attackers to exploit the update process, leading to arbitrary code execution through crafted applications. Users of the app are advised to be cautious and consider updating to more secure versions.