CVE-2023-50015

HIGH

Grandstream GXP14XX <1.0.8.9/GXP16XX <1.0.7.13 - Privilege Escalation

Title source: llm
STIX 2.1

Description

An issue was discovered in Grandstream GXP14XX 1.0.8.9 and GXP16XX 1.0.7.13, allows remote attackers to escalate privileges via incorrect access control using an end-user session-identity token.

Scores

CVSS v3 8.8
EPSS 0.0031
EPSS Percentile 53.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-250
Status published
Published Mar 09, 2024
Tracked Since Feb 18, 2026