Search Results (30149 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-27198 1 Visualware 1 Myconnection Server 2024-11-21 9.8 Critical
An issue was discovered in Visualware MyConnection Server before v11.1a. Unauthenticated Remote Code Execution can occur via Arbitrary File Upload in the web service when using a myspeed/sf?filename= URI. This application is written in Java and is thus cross-platform. The Windows installation runs as SYSTEM, which means that exploitation gives one Administrator privileges on the target system.
CVE-2021-27193 2 Microsoft, Netop 2 Windows, Vision Pro 2024-11-21 9.8 Critical
Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote unauthenticated attacker to read and write files on the remote machine with system privileges resulting in a privilege escalation.
CVE-2021-27185 1 Samba-client Project 1 Samba-client 2024-11-21 9.8 Critical
The samba-client package before 4.0.0 for Node.js allows command injection because of the use of process.exec.
CVE-2021-27177 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to bypass authentication by sending the decoded value of the GgpoZWxwCmxpc3QKd2hvCg== string to the telnet server.
CVE-2021-27172 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. A hardcoded GEPON password for root is defined inside /etc/init.d/system-config.sh.
CVE-2021-27171 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to start a Linux telnetd as root on port 26/tcp by using the CLI interface commands of ddd and shell (or tshell).
CVE-2021-27170 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connectivity, exposing the internal management interfaces to the Internet.
CVE-2021-27169 1 Fiberhome 2 An5506-04-fa, An5506-04-fa Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome AN5506-04-FA devices with firmware RP2631. There is a gepon password for the gepon account.
CVE-2021-27168 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a 6GFJdY4aAuUKJjdtSn7d password for the rdsadmin account.
CVE-2021-27167 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. There is a password of four hexadecimal characters for the admin account. These characters are generated in init_3bb_password in libci_adaptation_layer.so.
CVE-2021-27166 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The password for the enable command is gpon.
CVE-2021-27165 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The telnet daemon on port 23/tcp can be abused with the gpon/gpon credentials.
CVE-2021-27164 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / aisadmin credentials for an ISP.
CVE-2021-27163 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / tele1234 credentials for an ISP.
CVE-2021-27162 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / tattoo@home credentials for an ISP.
CVE-2021-27161 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 1234 credentials for an ISP.
CVE-2021-27160 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / 888888 credentials for an ISP.
CVE-2021-27159 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded useradmin / 888888 credentials for an ISP.
CVE-2021-27158 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded L1vt1m4eng / 888888 credentials for an ISP.
CVE-2021-27157 1 Fiberhome 2 Hg6245d, Hg6245d Firmware 2024-11-21 9.8 Critical
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded admin / 888888 credentials for an ISP.