First published: Mon Feb 24 2025(Updated: )
A vulnerability, which was classified as critical, has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected by this issue is some unknown functionality of the component Diagnosis. The manipulation of the argument Destination Address leads to os command injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
FiberHome AN5506-01A | ||
All of | ||
Fiberhome An5506-01-a Firmware | =rp2511 | |
Fiberhome An5506-01-a Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-1616 is classified as a critical vulnerability.
To fix CVE-2025-1616, apply the latest security patches provided by FiberHome for the AN5506-01A ONU GPON.
CVE-2025-1616 is an OS command injection vulnerability.
CVE-2025-1616 affects the Diagnosis functionality of FiberHome AN5506-01A ONU GPON.
CVE-2025-1616 can be exploited by manipulating the Destination Address argument to execute commands on the affected system.