An issue was discovered on FiberHome HG6245D devices through RP2613. There is a telnet?enable=0&key=calculated(BR0_MAC) backdoor API, without authentication, provided by the HTTP server. This will remove firewall rules and allow an attacker to reach the telnet server (used for the CLI).
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-10T18:35:09

Updated: 2021-02-10T18:35:09

Reserved: 2021-02-10T00:00:00


Link: CVE-2021-27173

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-02-10T19:15:15.183

Modified: 2022-07-12T17:42:04.277


Link: CVE-2021-27173

JSON object: View

cve-icon Redhat Information

No data.