Known Vulnerabilities for products from Fiberhome
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Fiberhome".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Additional devices specifications by Fiberhome can be found at device.report : Fiberhome
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-38814 json | A stored cross-site scripting (XSS) vulnerability in the auth_settings component of FiberHome AN5506-02-B vRP2521 allows atta... | 5.4 - MEDIUM | 2022-09-15 | 2022-09-19 |
| CVE-2022-36200 json | In FiberHome VDSL2 Modem HG150-Ub_V3.0, Credentials of Admin are submitted in URL, which can be logged/sniffed. | 7.5 - HIGH | 2022-08-29 | 2022-09-02 |
| CVE-2021-42912 json | FiberHome ONU GPON AN5506-04-F RP2617 is affected by an OS command injection vulnerability. This vulnerability allows the att... | Not Provided | 2021-12-16 | 2026-07-09 |
| CVE-2021-41946 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5.4 - MEDIUM | 2022-05-18 | 2022-05-26 |
| CVE-2021-27179 json | An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to crash the telnet daemon by sending a c... | 7.5 - HIGH | 2021-02-10 | 2021-02-12 |
| CVE-2021-27178 json | An issue was discovered on FiberHome HG6245D devices through RP2613. Some passwords are stored in cleartext in nvram. | 7.5 - HIGH | 2021-02-10 | 2021-02-12 |
| CVE-2021-27177 json | An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to bypass authentication by sending the d... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27176 json | An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_5g.cfg has cleartext passwords and 0644 permissi... | 7.5 - HIGH | 2021-02-10 | 2021-02-12 |
| CVE-2021-27175 json | An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_2g.cfg has cleartext passwords and 0644 permissi... | 7.5 - HIGH | 2021-02-10 | 2021-02-12 |
| CVE-2021-27174 json | An issue was discovered on FiberHome HG6245D devices through RP2613. wifi_custom.cfg has cleartext passwords and 0644 permiss... | 7.5 - HIGH | 2021-02-10 | 2021-02-12 |
| CVE-2021-27173 json | An issue was discovered on FiberHome HG6245D devices through RP2613. There is a telnet?enable=0&key=calculated(BR0_MAC) backd... | 7.5 - HIGH | 2021-02-10 | 2022-07-12 |
| CVE-2021-27172 json | An issue was discovered on FiberHome HG6245D devices through RP2613. A hardcoded GEPON password for root is defined inside /e... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27171 json | An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to start a Linux telnetd as root on port ... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27170 json | An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connect... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27169 json | An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon password for the gepon accou... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27168 json | An issue was discovered on FiberHome HG6245D devices through RP2613. There is a 6GFJdY4aAuUKJjdtSn7d password for the rdsadmi... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27167 json | An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for t... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27166 json | An issue was discovered on FiberHome HG6245D devices through RP2613. The password for the enable command is gpon. | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27165 json | An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23/tcp can be abused with the ... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-12 |
| CVE-2021-27164 json | An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / aisadmin c... | 9.8 - CRITICAL | 2021-02-10 | 2021-02-11 |
Known software with vulnerabilities from Fiberhome
| Type | Vendor | Product | Version |
|---|---|---|---|
| Hardware | Fiberhome | An5506-04-f | - |
| Operating System | Fiberhome | An5506-04-f Firmware | rp2669 |
| Operating System | Fiberhome | Hg2201t Firmware | hg2201t_1.00.m5007_js_201804 |