CVE-2025-28170
gxp1628 firmware, gxp1628
Grandstream Networks GXP1628 <=1.0.4.130 is vulnerable to Incorrect Access Control. The device is configured with directory listing enabled, allowing unauthorized access to sensitive directories and files.
- CVSS
- 7.6
- EPSS
- 0.29% 21.1% percentile
- CISA KEV
- Not listed
- Published
- 2025.07.30