Vulnerabilities > Fiberhome

DATE CVE VULNERABILITY TITLE RISK
2025-02-24 CVE-2025-1615 Code Injection vulnerability in Fiberhome An5506-01-A Firmware Rp2511
A vulnerability classified as problematic was found in FiberHome AN5506-01A ONU GPON RP2511.
network
low complexity
fiberhome CWE-94
4.8
2025-02-24 CVE-2025-1616 Command Injection vulnerability in Fiberhome An5506-01A Firmware Rp2511
A vulnerability, which was classified as critical, has been found in FiberHome AN5506-01A ONU GPON RP2511.
network
low complexity
fiberhome CWE-77
critical
9.8
2025-02-24 CVE-2025-1613 Code Injection vulnerability in Fiberhome An5506-01-A Firmware Rp2511
A vulnerability was found in FiberHome AN5506-01A ONU GPON RP2511.
network
low complexity
fiberhome CWE-94
4.8
2025-02-24 CVE-2025-1614 Code Injection vulnerability in Fiberhome An5506-01-A Firmware Rp2511
A vulnerability classified as problematic has been found in FiberHome AN5506-01A ONU GPON RP2511.
network
low complexity
fiberhome CWE-94
4.8
2022-09-15 CVE-2022-38814 Cross-site Scripting vulnerability in Fiberhome An5506-02-B Firmware Rp2521
A stored cross-site scripting (XSS) vulnerability in the auth_settings component of FiberHome AN5506-02-B vRP2521 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the sncfg_loid text field.
network
low complexity
fiberhome CWE-79
5.4
2022-08-29 CVE-2022-36200 Cleartext Transmission of Sensitive Information vulnerability in Fiberhome Hg150-Ub Firmware 3.0
In FiberHome VDSL2 Modem HG150-Ub_V3.0, Credentials of Admin are submitted in URL, which can be logged/sniffed.
network
low complexity
fiberhome CWE-319
7.5
2022-05-18 CVE-2021-41946 Cross-site Scripting vulnerability in Fiberhome Hg150-Ub Firmware 3.0
In FiberHome VDSL2 Modem HG150-Ub_V3.0, a stored cross-site scripting (XSS) vulnerability in Parental Control --> Access Time Restriction --> Username field, a user cannot delete the rule due to the XSS.
network
low complexity
fiberhome CWE-79
5.4
2021-12-16 CVE-2021-42912 OS Command Injection vulnerability in Fiberhome products
FiberHome ONU GPON AN5506-04-F RP2617 is affected by an OS command injection vulnerability.
network
low complexity
fiberhome CWE-78
8.8
2021-02-10 CVE-2021-27179 Improper Input Validation vulnerability in Fiberhome Hg6245D Firmware Rp2613
An issue was discovered on FiberHome HG6245D devices through RP2613.
network
low complexity
fiberhome CWE-20
7.5
2021-02-10 CVE-2021-27178 Cleartext Storage of Sensitive Information vulnerability in Fiberhome Hg6245D Firmware Rp2613
An issue was discovered on FiberHome HG6245D devices through RP2613.
network
low complexity
fiberhome CWE-312
7.5