Hardcoded Credentials Vulnerability in FiberHome HG6245D Devices
CVE-2021-27161
9.8CRITICAL
What is CVE-2021-27161?
A security flaw has been identified in the FiberHome HG6245D devices whereby the web daemon employs hardcoded administrative credentials. These default credentials, 'admin' with the password '1234', are exposed by an ISP, leading to significant security risks. Attackers can exploit this weakness to gain unauthorized access to the device, potentially allowing them to manipulate configurations or compromise user data.