9.8
CVE-2021-27170
- EPSS 0.09%
- Veröffentlicht 10.02.2021 19:15:14
- Zuletzt bearbeitet 21.11.2024 05:57:28
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connectivity, exposing the internal management interfaces to the Internet.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fiberhome ≫ Hg6245d Firmware Version <= rp2613
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.251 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-922 Insecure Storage of Sensitive Information
The product stores sensitive information without properly limiting read or write access by unauthorized actors.