CVE-2025-1616
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Feb 24, 2025
Updated: Feb 28, 2025
CWE ID 78
CWE ID 77
Summary
CVE-2025-1616 is a critical vulnerability affecting the Diagnosis component of FiberHome AN5506-01A ONU GPON RP2511. The manipulation of the Destination Address argument allows an attacker to inject os commands, potentially leading to remote code execution. The vulnerability has been disclosed to the public, and the exploit is now available. Despite early contact from security teams, the vendor has not responded to the disclosure.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share