A Malformed Input String to /cgi-bin/delete_CA on Grandstream GXP16xx VoIP 1.0.4.128 phones allows attackers to delete configuration parameters and gain admin access to the device.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gxp1610_firmware | Grandstream | 1.0.4.128 (including) | 1.0.4.128 (including) |