Header banner
Revain logoHome Page
Megan Davis photo
Georgia, Tbilisi
1 Level
467 Review
0 Karma

Review on Enhance Your Communication with the Grandstream HT801 Single-Port Analog Telephone Adapter by Megan Davis

Revainrating 1 out of 5

Unpatched critical vulnerabilities

The Grandstream firmware for this machine contains critical vulnerabilities that are more than two years old. (Rated a 9.8 on a severity scale of 1 to 10.) Fixes have been available to address issues for over two years, but they haven't added them to their firmware releases. The support team informed us that there is no timeline as to when the issues will be fixed. It's safe to say that after two years they either have no intention of fixing them or weren't even aware of it when we reported the issue. If remote, unauthenticated users can root arbitrary code on this device, this is not a problem on your network, then this device may be for you. If this doesn't sound like a good idea, disable SSH immediately from the main settings page. If you're in a security-conscious environment like us, you may also have issues with the continued SSLv3 support on the HTTPS web configuration page. (IE6 is the last browser to require SSLv3 in my opinion, so there's no good excuse left in 2019.) Grandstream support suggested submitting this browser as a "feature request" to its user forum. This was the last straw for us, we're replacing over a dozen of these devices with something that can pass basic safety checks.

Pros
  • Keeping my fists
Cons
  • No insurance