Description
An issue was discovered on FiberHome HG6245D devices through RP2613. By default, there are no firewall rules for IPv6 connectivity, exposing the internal management interfaces to the Internet.
References (1)
Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://pierrekim.github.io/blog/2021-01-12-fiberhome-ont-0day-vulnerabilities.html#insecure-ipv6
Scores
CVSS v3
9.8
EPSS
0.1595
EPSS Percentile
96.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-922
Status
published
Products (1)
fiberhome/hg6245d_firmware
< rp2613
Published
Feb 10, 2021
Tracked Since
Feb 18, 2026