Vulnerability index

Browse CVEs

1,724 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Hard-coded CredentialsCWE-798 × clear
CRITICAL 9.8 CVE-2021-27163EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / tele1234 credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27164EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / aisadmin credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27165EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23/tcp can be abused with the gpon/gpon credentials. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27166EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The password for the enable command is gpon. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27167EPSS 15% An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for the admin account. These … Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27168EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. There is a 6GFJdY4aAuUKJjdtSn7d password for the rdsadmin account. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27169EPSS 20% An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon password for the gepon account. An5506 04 Fa Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27144EPSS 22% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded f~i!b@e#r$h%o^m*esuperadmin / s(f)u_h+g|u … Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27145EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / lnadmin credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27146EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / CUadmin credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27147EPSS 17% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / admin credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27148EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded telecomadmin / nE7jA%5m credentials for an… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27149EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded adminpldt / z6dUABtl270qRxt7a2uGTiw creden… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27150EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded gestiontelebucaramanga / t3l3buc4r4m4ng420… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27151EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded rootmet / m3tr0r00t credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27152EPSS 24% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded awnfibre / fibre@dm!n credentials for an I… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27153EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded trueadmin / admintrue credentials for an I… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27154EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / G0R2U1P2ag credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27155EPSS 20% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 3UJUh2VemEfUtesEchEC2d2e credentia… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27156EPSS 15% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the M… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27157EPSS 15% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 CRITICAL 9.8 CVE-2021-27141EPSS 16% An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf/umconfig.txt are obfuscated via XOR with the hardcoded *j… Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 HIGH 7.5 CVE-2021-27142EPSS 16% An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 07… Hg6245d Firmware No fix yet Fix from $1,9502021-02-10 CRITICAL 9.8 CVE-2021-27143EPSS 16% An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / user1234 credentials for an ISP. Hg6245d Firmware No fix yet Fix from $2,3002021-02-10 HIGH 7.8 CVE-2021-25275 SolarWinds Orion Platform before 2020.2.4, as used by various SolarWinds products, installs and uses a SQL Server backend, and stores database creden… Orion Platform 2020.2.4+ Fix from $1,9502021-02-03 HIGH 7.8 CVE-2019-20471 An issue was discovered on TK-Star Q90 Junior GPS horloge 3.1042.9.8656 devices. When using the device at initial setup, a default password is used (… Q90 Junior Gps Horloge Firmware Mitigation only Fix from $1,9502021-02-01 CRITICAL 9.8 CVE-2020-13858 An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices. They contain two undocumented administrator accounts. The s… Mofi4500 4gxelte Firmware Patch available Fix from $2,3002021-02-01 CRITICAL 9.8 CVE-2020-15833 An issue was discovered on Mofi Network MOFI4500-4GXeLTE 4.1.5-std devices. The Dropbear SSH daemon has been modified to accept an alternate hard-cod… Mofi4500 4gxelte Firmware Patch available Fix from $2,3002021-02-01 CRITICAL 10.0 CVE-2020-6779 Use of Hard-coded Credentials in the database of Bosch FSM-2500 server and Bosch FSM-5000 server up to and including version 5.2 allows an unauthenti… Fsm 2500 Firmware after 5.2 Fix from $2,3002021-01-26 CRITICAL 9.8 CVE-2020-28998 An issue was discovered on Geeni GNC-CW013 doorbell 1.8.1 devices. A vulnerability exists in the Telnet service that allows a remote attacker to take… Gnc Cw013 Firmware Mitigation only Fix from $2,3002021-01-26