Multiple Security Vulnerabilities Found In FiberHome Routers
A security researcher has found numerous security vulnerabilities in FiberHome routers. Some of these vulnerabilities might affect the other routers as well (besides the tested ones). While some of them may be inadvertent bugs, other flaws resemble more like intentional backdoors.
Vulnerabilities In FiberHome Routers
Security researcher Pierre Kim has shared a detailed report on his findings highlighting numerous flaws with FiberHome devices. Specifically, he noticed at least 28 different security vulnerabilities affecting multiple FiberHome routers.
FiberHome Networks is basically a Chinese networking and telecommunication giant that produces different related equipment for vendors globally, including routers.
Briefly, Kim identified the security issues in FTTH ONT router firmware while testing the models FiberHome HG6245D and FiberHome RP2602. However, given the similarity of the codebase, the researcher suspects that these issues may also impact other models.
As observed, the router firmware prevents web panel abuse by protecting the IPv4 interface. It also repels botnet threats by disabling the Telnet management feature by default.
However, the router lacks the same measures for the IPv6 interface. Thus, anyone with access to the IPv6 address can exploit the device.
Besides, Kim also found other vulnerabilities that allow taking over the ISP infrastructure. These include the device’s MAC address leakage that also allows Telnet connections via maliciously crafted HTTPS requests, storage of passwords and cookies in plaintext, exposure of SSL certificate stored on the device that permits MiTM attacks, and 22 hardcoded credentials in the management panel.
Moreover, other vulnerabilities triggering privilege escalation, authentication bypass, and dos attacks also exist.
Are Patches Available?
The researcher found these vulnerabilities in early 2020. While he publicly disclosed the bugs recently, he preferred a full disclosure owing to suspected intentional backdoors.
Full-disclosure is applied as it is believed that some backdoors have been intentionally placed by the vendor.It remains unclear whether the vendors have addressed any or all of the bugs in the latest firmware. The vendors haven’t released any official statement yet in this regard.
Posted from my blog with SteemPress : https://latesthackingnews.com/2021/01/18/multiple-security-vulnerabilities-found-in-fiberhome-routers/
Leave Multiple Security Vulnerabilities Found In FiberHome Routers to:
Read more #backdoor posts
Best Posts From twr
We have not curated any of twr's posts yet. But you can encourage our curation team to review posts by visiting them regularly and by referring other readers. Because we give priority to frequently read content.
More Posts From twr
- Will a VPN Protect Me From a Data Breach?
- Why DDoS Attacks Are Still One of the Biggest Cyberthreats
- Why Do Subdomain Lookups for Cybersecurity?
- What You Need To Know About Bitcoin Before Investing Your Money In It
- Massive Cyberattacks that Shook the World in 2020
- Data of 176 Million Pakistani Citizens Found For Sale On Dark Web
- Apple Patched Three Zero-Days With The Release Of iOS 14.4
- Watch Out For This Wormable Malware Spreading Via WhatsApp
- What Password Managers Are Safe to Use in 2021
- 7 Reasons to Choose an Outsourced Security Services Provider