← Back

Grandstream

grandstream

55 CVEs • 113 products

Products (113)

Click to collapse
Toggle
Wave
wave
Ht488
ht488
Gxv3500
gxv3500
Gxv3501
gxv3501
Gxv3504
gxv3504
Gxv3601
gxv3601
Gxv3601hd/ll
gxv3601hd/ll
Gxv3611hd/ll
gxv3611hd/ll
Gxv3615w/p
gxv3615w/p
Gxv3615wp Hd
gxv3615wp_hd
Gxv3651fhd
gxv3651fhd
Gxv3662hd
gxv3662hd
Budgetone 101
budgetone_101
Budgetone 102
budgetone_102
Gxp 2000
gxp-2000
Budgetone 200
budgetone_200
Sip Phone
sip_phone
Wp820 Firmware
wp820_firmware
Bt 100
bt-100
Gxv3611 Hd
gxv3611_hd
Ht802
ht802
Gac2500
gac2500
Gvc3202
gvc3202
Gxv3275
gxv3275
Gxv3240
gxv3240
Gxp2200
gxp2200
Gwn7000
gwn7000
Gwn7610
gwn7610
Gxv3370
gxv3370
Wp820
wp820
Gxv3611ir Hd
gxv3611ir_hd
Ucm6204
ucm6204
Gxp1610
gxp1610
Gxp1615
gxp1615
Gxp1620
gxp1620
Gxp1625
gxp1625
Gxp1628
gxp1628
Gxp1630
gxp1630
Gxv3601hd
gxv3601hd
Gxv3601ll
gxv3601ll
Gxv3611hd
gxv3611hd
Gxv3611ll
gxv3611ll
Gxv3615w
gxv3615w
Gxv3615p
gxv3615p
Ucm6200
ucm6200
Ucm6202
ucm6202
Ucm6208
ucm6208
Ht801
ht801
Ht812
ht812

CVEs (55)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Grandstream
1Ht802 Firmware
May 13, 2026
Nov 6, 2017
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Stored Cross-site scripting (XSS) vulnerability in /cgi-bin/config2 on Vonage (Grandstream) HT802 devices allows remote authenticated users to inject arbitrary web script or HTML via the DHCP vendor class ID field (P148)...Show more
Stored Cross-site scripting (XSS) vulnerability in /cgi-bin/config2 on Vonage (Grandstream) HT802 devices allows remote authenticated users to inject arbitrary web script or HTML via the DHCP vendor class ID field (P148).Show less
1Grandstream
1Ht802 Firmware
May 13, 2026
Nov 6, 2017
N/A· v4
8.0 HIGH· v3
6.0 MEDIUM· v2
Cross-Site Request Forgery (CSRF) in the Basic Settings screen on Vonage (Grandstream) HT802 devices allows attackers to modify settings, related to cgi-bin/update.
1Grandstream
1Wave
May 13, 2026
Apr 21, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
The Grandstream Wave app 1.0.1.26 and earlier for Android does not use HTTPS when retrieving update information, which might allow man-in-the-middle attackers to execute arbitrary code via a crafted application.
1Grandstream
1Wave
May 13, 2026
Apr 21, 2017
N/A· v4
5.9 MEDIUM· v3
4.3 MEDIUM· v2
The com.softphone.common package in the Grandstream Wave app 1.0.1.26 and earlier for Android does not properly validate SSL certificates, which allows man-in-the-middle attackers to spoof the Grandstream provisioning se...Show more
The com.softphone.common package in the Grandstream Wave app 1.0.1.26 and earlier for Android does not properly validate SSL certificates, which allows man-in-the-middle attackers to spoof the Grandstream provisioning server via a crafted certificate.Show less
1Grandstream
1Wave
May 13, 2026
Apr 21, 2017
N/A· v4
8.1 HIGH· v3
6.8 MEDIUM· v2
The auto-provisioning mechanism in the Grandstream Wave app 1.0.1.26 and earlier for Android and Grandstream Video IP phones allows man-in-the-middle attackers to spoof provisioning data and consequently modify device fu...Show more
The auto-provisioning mechanism in the Grandstream Wave app 1.0.1.26 and earlier for Android and Grandstream Video IP phones allows man-in-the-middle attackers to spoof provisioning data and consequently modify device functionality, obtain sensitive information from system logs, and have unspecified other impact by leveraging failure to use an HTTPS session for downloading configuration files from http://fm.grandstream.com/gs/.Show less
1Grandstream
1Gxv3611 Hd Firmware
May 6, 2026
Jul 8, 2015
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability on the Grandstream GXV3611_HD camera with firmware before 1.0.3.9 beta allows remote attackers to execute arbitrary SQL commands by attempting to establish a TELNET session with a crafted user...Show more
SQL injection vulnerability on the Grandstream GXV3611_HD camera with firmware before 1.0.3.9 beta allows remote attackers to execute arbitrary SQL commands by attempting to establish a TELNET session with a crafted username.Show less
1Grandstream
11Gxv3500
Gxv3501Gxv3504+8 more
Apr 29, 2026
Oct 1, 2013
N/A· v4
N/A· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other came...Show more
Cross-site request forgery (CSRF) vulnerability in goform/usermanage in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models allows remote attackers to hijack the authentication of unspecified victims for requests that add users.Show less
1Grandstream
11Gxv3500
Gxv3501Gxv3504+8 more
Apr 29, 2026
Oct 1, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models before firmware 1....Show more
Cross-site scripting (XSS) vulnerability in Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models before firmware 1.0.4.44, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.Show less
1Grandstream
1Ht488
Apr 23, 2026
Nov 1, 2007
N/A· v4
N/A· v3
7.8 HIGH· v2
The Grandstream HT-488 0.1 allows remote attackers to cause a denial of service (device crash) via a flood of fragmented packets to port 5060.
1Grandstream
1Ht488
Apr 23, 2026
Nov 1, 2007
N/A· v4
N/A· v3
7.1 HIGH· v2
Buffer overflow in the SIP parser on the Grandstream HT-488 0.1 allows remote attackers to cause a denial of service (device crash) via a crafted SIP INVITE message.
1Grandstream
1Sip Phone
Apr 23, 2026
Aug 23, 2007
N/A· v4
N/A· v3
7.8 HIGH· v2
The Grandstream SIP Phone GXV-3000 with firmware 1.0.1.7, Loader 1.0.0.6, and Boot 1.0.0.18 allows remote attackers to force silent call completion, eavesdrop on the phone's local environment, and cause a denial of servi...Show more
The Grandstream SIP Phone GXV-3000 with firmware 1.0.1.7, Loader 1.0.0.6, and Boot 1.0.0.18 allows remote attackers to force silent call completion, eavesdrop on the phone's local environment, and cause a denial of service (blocked call reception) via a certain SIP INVITE message followed by a certain "SIP/2.0 183 Session Progress" message.Show less
1Grandstream
1Budgetone 200
Apr 23, 2026
Mar 21, 2007
N/A· v4
N/A· v3
7.8 HIGH· v2
The Grandstream BudgeTone 200 IP phone, with program 1.1.1.14 and bootloader 1.1.1.5, allows remote attackers to cause a denial of service (device crash) via SIP (1) INVITE, (2) CANCEL, or unspecified other messages with...Show more
The Grandstream BudgeTone 200 IP phone, with program 1.1.1.14 and bootloader 1.1.1.5, allows remote attackers to cause a denial of service (device crash) via SIP (1) INVITE, (2) CANCEL, or unspecified other messages with a WWW-Authenticate header containing a crafted Digest domain.Show less
1Grandstream
1Gxp 2000
Apr 23, 2026
Oct 11, 2006
N/A· v4
N/A· v3
7.8 HIGH· v2
Grandstream GXP-2000 VoIP Desktop Phone, firmware version 1.1.0.5, allows remote attackers to cause a denial of service (hang or reboot) via a large amount of ASCII data sent to port (1) 5060/UDP, (2) 5062/UDP, (3) 5064/...Show more
Grandstream GXP-2000 VoIP Desktop Phone, firmware version 1.1.0.5, allows remote attackers to cause a denial of service (hang or reboot) via a large amount of ASCII data sent to port (1) 5060/UDP, (2) 5062/UDP, (3) 5064/UDP, (4) 5066/UDP, (5) 9876/UDP, or (6) 26789/UDP.Show less
1Grandstream
2Budgetone 101
Budgetone 102
Apr 16, 2026
Aug 16, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Grandstream BudgeTone 101 and 102 running firmware 1.0.6.7 and possibly earlier versions, allows remote attackers to cause a denial of service (device hang or reboot) via a large UDP packet to port 5060.
1Grandstream
1Bt 100 Firmware
Apr 16, 2026
Jul 11, 2005
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as t...Show more
Grandstream BudgeTone (BT) 100 Voice over IP (VoIP) phones do not properly check the Call-ID, branch, and tag values in a NOTIFY message to verify a subscription, which allows remote attackers to spoof messages such as the "Messages waiting" message.Show less