← All CVEs

CVE-2021-27156

critical · 9.8

An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains credentials for an ISP that equal the last part of the MAC address of the br0 interface.

9.8
CVSS
15.0%
EPSS (exploit prob.)
97th
EPSS percentile
2021-02-10
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-798

Affected products

VendorProductAffected versions
fiberhomehg6245d_firmware<= rp2613
fiberhomehg6245dall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2021-27156