First published: Wed Feb 10 2021(Updated: )
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to find passwords and authentication cookies stored in cleartext in the web.log HTTP logs.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fiberhome Hg6245d Firmware | <=rp2613 | |
FiberHome HG6245D |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27140 is a vulnerability discovered on FiberHome HG6245D devices through RP2613 that allows the finding of passwords and authentication cookies stored in cleartext in the web.log HTTP logs.
CVE-2021-27140 affects FiberHome HG6245D devices through RP2613 by exposing passwords and authentication cookies stored in cleartext in the web.log HTTP logs.
CVE-2021-27140 has a severity rating of 7.5 (high).
To fix the vulnerability CVE-2021-27140, it is recommended to update FiberHome HG6245D devices to a firmware version that resolves the issue.
You can find more information about CVE-2021-27140 at the following reference: https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html#httpd-passwords-logs