Grandstream / Wave
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-40979 | DLL search order hijack in Wave by Grandstream Networks | HIGH | 7.0 | Sep 10, 2025 |
| CVE-2016-1520 | The Grandstream Wave app 1.0.1.26 and earlier for Android does not use HTTPS when retrieving update information, which might allow man-in-the-middle attackers… | HIGH | 7.8 | Apr 21, 2017 |
| CVE-2016-1519 | The com.softphone.common package in the Grandstream Wave app 1.0.1.26 and earlier for Android does not properly validate SSL certificates, which allows man-in-… | MEDIUM | 5.9 | Apr 21, 2017 |
| CVE-2016-1518 | The auto-provisioning mechanism in the Grandstream Wave app 1.0.1.26 and earlier for Android and Grandstream Video IP phones allows man-in-the-middle attackers… | HIGH | 8.1 | Apr 21, 2017 |
Showing 1 to 3 of 3 CVEs