Vulnerability index

Browse CVEs

57 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Hg6245d Firmware CRITICAL 9.8
CVE-2021-27146EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / CUadmin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27147EPSS 17%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / admin credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27148EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded telecomadmin / nE7jA%5m credentials for an…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27149EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded adminpldt / z6dUABtl270qRxt7a2uGTiw creden…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27150EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded gestiontelebucaramanga / t3l3buc4r4m4ng420…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27151EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded rootmet / m3tr0r00t credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27152EPSS 24%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded awnfibre / fibre@dm!n credentials for an I…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27153EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded trueadmin / admintrue credentials for an I…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27154EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / G0R2U1P2ag credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27155EPSS 20%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 3UJUh2VemEfUtesEchEC2d2e credentia…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27156EPSS 15%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the M…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27157EPSS 15%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27141EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf/umconfig.txt are obfuscated via XOR with the hardcoded *j…

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware CRITICAL 9.8
CVE-2021-27143EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / user1234 credentials for an ISP.

No fix yet
Fix from $2,300 2021-02-10
Hg6245d Firmware HIGH 7.5
CVE-2021-27139EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to extract information from the device without authentication by …

No fix yet
Fix from $1,950 2021-02-10
Hg6245d Firmware HIGH 7.5
CVE-2021-27140EPSS 19%

An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to find passwords and authentication cookies stored in cleartext …

No fix yet
Fix from $1,950 2021-02-10
Hg6245d Firmware HIGH 7.5
CVE-2021-27142EPSS 16%

An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 07…

No fix yet
Fix from $1,950 2021-02-10
Hg2201t Firmware HIGH 8.8
CVE-2019-17186EPSS 6%

/var/WEB-GUI/cgi-bin/telnet.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication remote code execution.

No fix yet
Fix from $1,950 2019-10-08
Hg2201t Firmware HIGH 7.5
CVE-2019-17187EPSS 11%

/var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arb…

No fix yet
Fix from $1,950 2019-10-08
Vdsl2 Modem Hg 150 Ub Firmware CRITICAL 9.8
CVE-2018-9248EPSS 15%

FiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass via a "Cookie: Name=0admin" header.

No fix yet
Fix from $2,300 2018-04-04
Vdsl2 Modem Hg 150 Ub Firmware CRITICAL 9.8
CVE-2018-9249EPSS 6%

FiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass by ignoring the parent.location='login.html' JavaScript code in the response to a…

Mitigation only
Fix from $2,300 2018-04-04
Lm53q1 Firmware CRITICAL 9.8
CVE-2017-16885EPSS 33%

Improper Permissions Handling in the Portal on FiberHome LM53Q1 VH519R05C01S38 devices (intended for obtaining information about Internet Usage, Chan…

No fix yet
Fix from $2,300 2018-01-12
Lm53q1 Firmware CRITICAL 9.8
CVE-2017-16887EPSS 37%

The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal. Unauthorize…

No fix yet
Fix from $2,300 2018-01-12
Lm53q1 Firmware HIGH 8.8
CVE-2017-16886EPSS 7%

The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal. Unauthorize…

No fix yet
Fix from $1,950 2018-01-12
Routerfiberhome Firmware HIGH 7.5
CVE-2017-15647EPSS 27%

On FiberHome routers, Directory Traversal exists in /cgi-bin/webproc via the getpage parameter in conjunction with a crafted var:page value.

Mitigation only
Fix from $1,950 2017-10-19
Adsl An1020 25 Firmware CRITICAL 9.8
CVE-2017-14147EPSS 66%

An issue was discovered on FiberHome User End Routers Bearing Model Number AN1020-25 which could allow an attacker to easily restore a router to its …

No fix yet
Fix from $2,300 2017-09-07
Fengine S5800 Firmware MEDIUM 5.9
CVE-2017-5544EPSS 5%

An issue was discovered on FiberHome Fengine S5800 switches V210R240. An unauthorized attacker can access the device's SSH service, using a password …

Mitigation only
Fix from $1,600 2017-01-23