Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to CPU exhaustion due to an infinite loop in the TR-069 service. Unauthenticated remote attackers can trigger this case by sending a one character TCP message to the TR-069 service.

Project Subscriptions

Vendors Products
Grandstream Subscribe
Ht801 Firmware Subscribe
Ht802 Firmware Subscribe
Ht812 Firmware Subscribe
Ht813 Firmware Subscribe
Ht814 Firmware Subscribe
Ht818 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2020-26920 Grandstream HT800 series firmware version 1.0.17.5 and below is vulnerable to CPU exhaustion due to an infinite loop in the TR-069 service. Unauthenticated remote attackers can trigger this case by sending a one character TCP message to the TR-069 service.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2024-08-04T08:39:25.699Z

Reserved: 2020-01-06T00:00:00

Link: CVE-2020-5761

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-07-29T19:15:15.047

Modified: 2024-11-21T05:34:33.363

Link: CVE-2020-5761

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses