First published: Wed Feb 10 2021(Updated: )
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / CUadmin credentials for an ISP.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fiberhome Hg6245d Firmware | <=rp2613 | |
FiberHome HG6245D |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27146 is a vulnerability found on FiberHome HG6245D devices through RP2613 where the web daemon contains hardcoded admin/CUadmin credentials.
CVE-2021-27146 has a severity rating of 9.8, making it critical.
Fiberhome Hg6245d Firmware up to and including RP2613 is affected by CVE-2021-27146.
There is currently no known fix for CVE-2021-27146. It is recommended to contact the ISP or device manufacturer for further assistance.
More information about CVE-2021-27146 can be found at this reference: https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html#httpd-hardcoded-credentials