Vulnerability index

Browse CVEs

1,724 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Hard-coded CredentialsCWE-798 × clear
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27163EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / tele1234 credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27164EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / aisadmin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27165EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23/tcp can be abused with the gpon/gpon credentials.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27166EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The password for the enable command is gpon.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27167EPSS 15%

An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for the admin account. These …

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27168EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. There is a 6GFJdY4aAuUKJjdtSn7d password for the rdsadmin account.

No fix yet
Fix from $2,300 2021-02-10
An5506 04 Fa Firmware CRITICAL 9.8
CVE-2021-27169EPSS 20%

An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon password for the gepon account.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27144EPSS 22%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded f~i!b@e#r$h%o^m*esuperadmin / s(f)u_h+g|u …

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27145EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / lnadmin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27146EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / CUadmin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27147EPSS 17%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / admin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27148EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded telecomadmin / nE7jA%5m credentials for an…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27149EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded adminpldt / z6dUABtl270qRxt7a2uGTiw creden…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27150EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded gestiontelebucaramanga / t3l3buc4r4m4ng420…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27151EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded rootmet / m3tr0r00t credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27152EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded awnfibre / fibre@dm!n credentials for an I…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27153EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded trueadmin / admintrue credentials for an I…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27154EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / G0R2U1P2ag credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27155EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 3UJUh2VemEfUtesEchEC2d2e credentia…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27156EPSS 15%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the M…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27157EPSS 15%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27141EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf/umconfig.txt are obfuscated via XOR with the hardcoded *j…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware HIGH 7.5
CVE-2021-27142EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 07…

No fix yet
Fix from $1,950 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27143EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / user1234 credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Orion Platform HIGH 7.8
CVE-2021-25275

SolarWinds Orion Platform before 2020.2.4, as used by various SolarWinds products, installs and uses a SQL Server backend, and stores database creden…

Fix: 2020.2.4+
Fix from $1,950 2021-02-03
Q90 Junior Gps Horloge Firmware HIGH 7.8
CVE-2019-20471

An issue was discovered on TK-Star Q90 Junior GPS horloge 3.1042.9.8656 devices. When using the device at initial setup, a default password is used (…

Mitigation only
Fix from $1,950 2021-02-01
Mofi4500 4gxelte Firmware CRITICAL 9.8
CVE-2020-13858

An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices. They contain two undocumented administrator accounts. The s…

Patch available
Fix from $2,300 2021-02-01
Mofi4500 4gxelte Firmware CRITICAL 9.8
CVE-2020-15833

An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The Dropbear SSH daemon has been modified to accept an alternate hard-cod…

Patch available
Fix from $2,300 2021-02-01
Fsm 2500 Firmware CRITICAL 10.0
CVE-2020-6779

Use of Hard-coded Credentials in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows an unauthenti…

Fix: after 5.2
Fix from $2,300 2021-01-26
Gnc Cw013 Firmware CRITICAL 9.8
CVE-2020-28998

An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices. A vulnerability exists in the Telnet service that allows a remote attacker to take…

Mitigation only
Fix from $2,300 2021-01-26