First published: Wed Apr 04 2018(Updated: )
FiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass via a "Cookie: Name=0admin" header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fiberhome Vdsl2 Modem Hg 150-ub Firmware | ||
FiberHome VDSL2 Modem HG 150-UB |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2018-9248.
The severity of CVE-2018-9248 is critical with a severity value of 9.8.
FiberHome VDSL2 Modem HG 150-UB devices with firmware versions prior to the patched version are affected.
An attacker can exploit CVE-2018-9248 by bypassing authentication using a "Cookie: Name=0admin" header.
Yes, the fix for CVE-2018-9248 is to update the firmware of the FiberHome VDSL2 Modem HG 150-UB device to the patched version.