CVE-2025-1613

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Feb 24, 2025
Updated: Feb 28, 2025
CWE ID 94
CWE ID 79

Summary

CVE-2025-1613 is a newly disclosed vulnerability affecting the FiberHome AN5506-01A Optical Network Unit (ONU) GPON RP2511. This issue, which has been classified as problematic, resides in the URL Filtering Submenu's /goform/URL_filterCfg component. An attacker can exploit this cross-site scripting (XSS) vulnerability by manipulating the url_IP argument. The vulnerability can be exploited remotely and the exploit has been made public. Although the vendor was notified of the disclosure, they have yet to respond or provide a patch.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share