nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-27162 CVE-2021-27162
CRITICAL
fiberhome hg6245d_firmware Use of Hard-coded Credentials
Record summary
CVE-2021-27162 has a selected CVSS score of 9.8 (critical).
Description
An issue was discovered on FiberHome HG6245D devices through RP2613. The web daemon contains the hardcoded user / tattoo@home credentials for an ISP.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Apr 29, 2025 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
hg6245d_firmwareBrowse fiberhome / hg6245d_firmware | VulnCheck | Version data not supplied | |
References
2pierrekim.github.io
https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html