CVE-2025-28170 Information

Description

Grandstream Networks GXP1628 <=1.0.4.130 is vulnerable to Incorrect Access Control. The device is configured with directory listing enabled allowing unauthorized access to sensitive directories and files.

Reference

http://grandstream.com https://gist.github.com/Exek1el/928ea6fd06d3b48c1c91cfdc30317d8d

CNNVD-202507-3618 (Published: 2025-07-29)

Share on: