Vulnerabilities > Fiberhome > High

DATE CVE VULNERABILITY TITLE RISK
2021-02-10 CVE-2021-27139 Unspecified vulnerability in Fiberhome Hg6245D Firmware Rp2613
An issue was discovered on FiberHome HG6245D devices through RP2613.
network
low complexity
fiberhome
7.5
2019-10-08 CVE-2019-17186 Missing Authentication for Critical Function vulnerability in Fiberhome Hg2201T Firmware Hg2201T1.00.M5007Js201804
/var/WEB-GUI/cgi-bin/telnet.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication remote code execution.
network
low complexity
fiberhome CWE-306
8.8
2019-10-08 CVE-2019-17187 Path Traversal vulnerability in Fiberhome Hg2201T Firmware 1.00.M5007Js201804
/var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arbitrary files.
network
low complexity
fiberhome CWE-22
7.5
2018-01-12 CVE-2017-16886 Cross-Site Request Forgery (CSRF) vulnerability in Fiberhome Lm53Q1 Firmware Vh519R05C01S38
The portal on FiberHome Mobile WIFI Device Model LM53Q1 VH519R05C01S38 uses SOAP based web services in order to interact with the portal.
network
low complexity
fiberhome CWE-352
8.8
2017-10-19 CVE-2017-15647 Path Traversal vulnerability in Fiberhome Routerfiberhome Firmware
On FiberHome routers, Directory Traversal exists in /cgi-bin/webproc via the getpage parameter in conjunction with a crafted var:page value.
network
low complexity
fiberhome CWE-22
7.5