CVE-2019-15064: HiNet GPON firmware version < I040GWR190731 allows a user login to device without any authentication
Published Oct 17, 2019
·Updated
HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication.
Affected Software
2 affected components
HiNet GPON firmware<i040gwr190731
HiNet GPON
Event History
Oct 17, 2019
CVE Published
via MITRE·07:19 PM
Data Sourced
via MITRE·07:19 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-15064?
The severity of CVE-2019-15064 is critical with a CVSS score of 9.8.
2
How do I fix CVE-2019-15064?
To mitigate CVE-2019-15064, upgrade to HiNet GPON firmware version I040GWR190731 or later.
3
What type of vulnerability is CVE-2019-15064?
CVE-2019-15064 is an authentication bypass vulnerability that allows unauthorized access to the device.
4
Who is affected by CVE-2019-15064?
Users of HiNet GPON firmware versions prior to I040GWR190731 are affected by CVE-2019-15064.
5
What can an attacker do with CVE-2019-15064?
An attacker can log in to the device without any authentication, potentially leading to unauthorized control and data access.