Vulnerabilities > Fiberhome > Hg2201T Firmware

DATE CVE VULNERABILITY TITLE RISK
2019-10-08 CVE-2019-17186 Improper Input Validation vulnerability in Fiberhome Hg2201T Firmware Hg2201T1.00.M5007Js201804
/var/WEB-GUI/cgi-bin/telnet.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication remote code execution.
network
low complexity
fiberhome CWE-20
critical
9.0
2019-10-08 CVE-2019-17187 Path Traversal vulnerability in Fiberhome Hg2201T Firmware 1.00.M5007Js201804
/var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arbitrary files.
network
low complexity
fiberhome CWE-22
5.0