CVE-2022-2025

Publication date

2022-09-23 15:06:54

Family

INCIBE

State

PUBLISHED

Description

an attacker with knowledge of user/pass of Grandstream GSD3710 in its 1.0.11.13 version, could overflow the stack since it doesnt check the param length before use the strcopy instruction. The explotation of this vulnerability may lead an attacker to execute a shell with full access.