Cross Site Scripting Vulnerability in FiberHome AN5506-01A ONU GPON RP2511
CVE-2025-1614
4.8MEDIUM
What is CVE-2025-1614?
A vulnerability found in FiberHome AN5506-01A ONU GPON RP2511 affects the Port Forwarding Submenu, specifically the /goform/portForwardingCfg file. The issue arises when the pf_Description parameter is manipulated, allowing for cross site scripting attacks. This vulnerability can be exploited remotely, posing a significant risk to users. Despite the public disclosure of the exploit, there has been no response from the vendor following the initial reports.
Affected Version(s)
AN5506-01A ONU GPON RP2511