An issue was discovered on FiberHome HG6245D devices through RP2613. There is a telnet?enable=0&key=calculated(BR0_MAC) backdoor API, without authentication, provided by the HTTP server. This will remove firewall rules and allow an attacker to reach the telnet server (used for the CLI).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-02-10T18:35:09

Updated: 2024-08-03T20:40:47.401Z

Reserved: 2021-02-10T00:00:00

Link: CVE-2021-27173

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-02-10T19:15:15.183

Modified: 2022-07-12T17:42:04.277

Link: CVE-2021-27173

cve-icon Redhat

No data.