CVE-2025-44178: Medium severity Dasan GPON ONU H660WM H660WMR210825 vulnerability
DASAN GPON ONU H660WM H660WMR210825 is susceptible to improper access control under its default settings. Attackers can exploit this vulnerability to gain unauthorized access to sensitive information and modify its configuration via the UPnP protocol WAN sides without any authentication.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-44178?
The severity of CVE-2025-44178 is categorized as high due to its potential for unauthorized access to sensitive information.
How do I fix CVE-2025-44178?
To fix CVE-2025-44178, change the default settings for UPnP access control and implement strong authentication measures.
What systems are affected by CVE-2025-44178?
CVE-2025-44178 affects the DASAN GPON ONU H660WM and H660WMR210825 models.
Can attackers exploit CVE-2025-44178 remotely?
Yes, attackers can exploit CVE-2025-44178 remotely via the UPnP protocol on the WAN side without authentication.
What are the risks associated with CVE-2025-44178?
The risks associated with CVE-2025-44178 include unauthorized access, data modification, and potential service disruptions.