VYPR

GPON

by HiNet

CVEs (5)

  • CVE-2019-15065Oct 17, 2019
    risk 0.00cvss epss 0.01

    A service which is hosted on port 6998 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific command to read arbitrary files. CVSS 3.0 Base score 9.3. CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L).

  • CVE-2019-15066Oct 17, 2019
    risk 0.00cvss epss 0.02

    An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execute arbitrary command through port 6998. CVSS 3.0 Base score 10.0. CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).

  • CVE-2019-13412Oct 17, 2019
    risk 0.00cvss epss 0.01

    A service which is hosted on port 3097 in HiNet GPON firmware < I040GWR190731 allows an attacker to execute a specific command to read arbitrary files. CVSS 3.0 Base score 9.3. CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:L).

  • CVE-2019-15064Oct 17, 2019
    risk 0.00cvss epss 0.01

    HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication.

  • CVE-2019-13411Oct 17, 2019
    risk 0.00cvss epss 0.01

    An “invalid command” handler issue was discovered in HiNet GPON firmware < I040GWR190731. It allows an attacker to execute arbitrary command through port 3097. CVSS 3.0 Base score 10.0. CVSS vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).