FiberHome ONU GPON AN5506-04-F RP2617 is affected by an OS command injection vulnerability. This vulnerability allows the attacker, once logged in, to send commands to the operating system as the root user via the ping diagnostic tool, bypassing the IP address field, and concatenating OS commands with a semicolon.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fiberhome an5506-01-a_firmware rp0509 |
||
fiberhome an5506-01-b_firmware rp2610 |
||
fiberhome an5506-02-b_firmware rp2520 |
||
fiberhome an5506-02-b_firmware rp2521 |
||
fiberhome an5506-02-b_firmware rp2603 |
||
fiberhome an5506-04-b_firmware rp2510 |
||
fiberhome an5506-04-f_firmware rp2617 |
||
fiberhome aan5506-04-g2g_firmware rp2560 |