Authentication Bypass in FiberHome VDSL2 Modem HG 150-UB
CVE-2018-9248
Key Information:
- Vendor
Fiberhome
- Vendor
- CVE Published:
- 4 April 2018
Badges
What is CVE-2018-9248?
The FiberHome VDSL2 Modem HG 150-UB contains a vulnerability that allows an attacker to bypass authentication mechanisms using a specially crafted Cookie header. By sending a 'Cookie: Name=0admin' request, unauthorized users can gain access to the modem's functionalities, potentially compromising the security of the network. This vulnerability emphasizes the importance of implementing robust security measures in networking devices to prevent unauthorized access.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
EPSS Score
69% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- π‘
Public PoC available
- πΎ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
