CVE-2021-27153
- EPSS 0.7%
- Veröffentlicht 10.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:25
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded trueadmin / admintrue credentials for an ISP.
CVE-2021-27154
- EPSS 0.7%
- Veröffentlicht 10.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:25
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / G0R2U1P2ag credentials for an ISP.
CVE-2021-27155
- EPSS 0.7%
- Veröffentlicht 10.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:25
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 3UJUh2VemEfUtesEchEC2d2e credentials for an ISP.
CVE-2021-27156
- EPSS 0.7%
- Veröffentlicht 10.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:26
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the MAC address of the br0 interface.
CVE-2021-27157
- EPSS 0.7%
- Veröffentlicht 10.02.2021 19:15:13
- Zuletzt bearbeitet 21.11.2024 05:57:26
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP.
CVE-2021-27139
- EPSS 0.05%
- Veröffentlicht 10.02.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:23
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to extract information from the device without authentication by disabling JavaScript and visiting /info.asp.
CVE-2021-27143
- EPSS 0.68%
- Veröffentlicht 10.02.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:24
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / user1234 credentials for an ISP.
CVE-2021-27142
- EPSS 0.15%
- Veröffentlicht 10.02.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:24
An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hardcoded private key that has 0777 permissions.
CVE-2021-27141
- EPSS 0.68%
- Veröffentlicht 10.02.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:23
An issue was discovered on FiberHome HG6245D devices through RP2613. Credentials in /fhconf/umconfig.txt are obfuscated via XOR with the hardcoded *j7a(L#yZ98sSd5HfSgGjMj8;Ss;d)(*&^#@$a2s0i3g key. (The webs binary has details on how XOR is used.)
CVE-2021-27140
- EPSS 0.05%
- Veröffentlicht 10.02.2021 19:15:12
- Zuletzt bearbeitet 21.11.2024 05:57:23
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to find passwords and authentication cookies stored in cleartext in the web.log HTTP logs.