|
195981
|
7.5 |
HIGH
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_5g.cfg has cleartext passwords and 0644 permissions.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-27176
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195982
|
7.5 |
HIGH
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_2g.cfg has cleartext passwords and 0644 permissions.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-27175
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195983
|
7.5 |
HIGH
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. wifi_custom.cfg has cleartext passwords and 0644 permissions.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2021-27174
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195984
|
7.5 |
HIGH
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a telnet?enable=0&key=calculated(BR0_MAC) backdoor API, without authentication, provided by the HTTP server. This will re…
|
NVD-CWE-Other
|
CVE-2021-27173
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195985
|
9.8 |
CRITICAL
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. A hardcoded GEPON password for root is defined inside /etc/init.d/system-config.sh.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27172
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195986
|
9.8 |
CRITICAL
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to start a Linux telnetd as root on port 26/tcp by using the CLI interface commands of ddd and shell (or tshell).
|
CWE-787
Out-of-bounds Write
|
CVE-2021-27171
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195987
|
9.8 |
CRITICAL
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connectivity, exposing the internal management interfaces to the Internet.
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2021-27170
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195988
|
9.8 |
CRITICAL
Network
|
fiberhome
|
an5506-04-fa_firmware
|
An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon password for the gepon account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27169
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195989
|
9.8 |
CRITICAL
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a 6GFJdY4aAuUKJjdtSn7d password for the rdsadmin account.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27168
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
195990
|
9.8 |
CRITICAL
Network
|
fiberhome
|
hg6245d_firmware
|
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for the admin account. These characters are generated in init_3bb_password in l…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2021-27167
|
2024-11-21 14:57 |
2021-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|