Loading
Generated remediation guidance and an executive summary. No account required.
An issue was discovered on the Grandstream HT801 Analog Telephone Adaptor before 1.0.29.8. From the limited configuration shell, it is possible to set the malicious gdb_debug_server variable. As a result, after a reboot, the device downloads and executes malicious scripts from an attacker-defined host.
Use Grandstream vendor hub and Ht801 Firmware product page to widen CVE-2021-37915 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-37748, CVE-2020-5763 and CVE-2020-5760 for nearby disclosures in the same product family.