Vulnerability in Grandstream HT801 Analog Telephone Adaptor
CVE-2021-37915
8.8HIGH
What is CVE-2021-37915?
A security issue in the Grandstream HT801 Analog Telephone Adaptor allows attackers to manipulate the device's limited configuration shell. By setting the malicious 'gdb_debug_server' variable, an attacker can cause the device to download and execute harmful scripts from a host of their choosing upon rebooting the device. This vulnerability poses significant risks for network security, especially in environments where the HT801 is deployed without adequate protection measures. Users are urged to update their devices to version 1.0.29.8 or later to mitigate this risk.