CVE-2025-1615

CVSS 3.1 Score 4.8 of 10 (medium)

Details

Published Feb 24, 2025
Updated: Feb 28, 2025
CWE ID 94
CWE ID 79

Summary

CVE-2025-1615 is a newly identified vulnerability affecting FiberHome AN5506-01A ONU GPON RP2511. This issue lies in the NAT Submenu's unknown functionality, which can be exploited through manipulation of the Description argument. The exploitation results in cross-site scripting attacks, allowing remote attackers to inject malicious code into unsuspecting users' browsers. Despite early disclosure, the vendor has not responded to the issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share