An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the MAC address of the br0 interface.
References
Link | Resource |
---|---|
https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html#httpd-hardcoded-credentials | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2021-02-10T18:38:06
Updated: 2021-02-10T18:38:06
Reserved: 2021-02-10T00:00:00
Link: CVE-2021-27156
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-02-10T19:15:13.933
Modified: 2021-02-11T00:52:47.813
Link: CVE-2021-27156
JSON object: View
Redhat Information
No data.
CWE