Show filters
40 Total Results
Displaying 1-10 of 40
Sort by:
Attacker Value
Unknown

CVE-2021-27178

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. Some passwords are stored in cleartext in nvram.
Attacker Value
Unknown

CVE-2021-27142

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 0777 permissions.
Attacker Value
Unknown

CVE-2021-27166

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The password for the enable command is gpon.
Attacker Value
Unknown

CVE-2021-27177

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to bypass authentication by sending the decoded value of the GgpoZWxwCmxpc3QKd2hvCg== string to the telnet server.
Attacker Value
Unknown

CVE-2021-27163

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / tele1234 credentials for an ISP.
Attacker Value
Unknown

CVE-2021-27167

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for the admin account. These characters are generated in init_3bb_password in libci_adaptation_layer.so.
Attacker Value
Unknown

CVE-2021-27165

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23/tcp can be abused with the gpon/gpon credentials.
Attacker Value
Unknown

CVE-2021-27157

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP.
Attacker Value
Unknown

CVE-2021-27152

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded awnfibre / fibre@dm!n credentials for an ISP.
Attacker Value
Unknown

CVE-2021-27149

Disclosure Date: February 10, 2021 (last updated February 22, 2025)
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded adminpldt / z6dUABtl270qRxt7a2uGTiw credentials for an ISP.