First published: Wed Feb 10 2021(Updated: )
An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_5g.cfg has cleartext passwords and 0644 permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fiberhome Hg6245d Firmware | <=rp2613 | |
FiberHome HG6245D |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27176 is a vulnerability discovered on FiberHome HG6245D devices through RP2613 where the wifictl_5g.cfg file has cleartext passwords and incorrect permissions.
CVE-2021-27176 has a severity rating of 7.5 (High).
CVE-2021-27176 allows an attacker to access cleartext passwords in the wifictl_5g.cfg file on FiberHome HG6245D devices through RP2613.
To fix CVE-2021-27176, users should apply the latest firmware update provided by FiberHome.
More information about CVE-2021-27176 can be found at this link: https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html#system-credentials-clear-text-files