ID

VAR-E-201309-0258


TITLE

FiberHome Modem Router HG-110 Directory Traversal And Security Bypass Vulnerabilities

Trust: 0.3

sources: BID: 63235

DESCRIPTION

FiberHome Modem Router HG-110 is prone to directory traversal and security bypass vulnerabilities.
Exploiting these issues will allow an attacker to bypass security restrictions, perform unauthorized actions and access, read and execute files outside the webroot folder. Information harvested may aid in launching further attacks.
FiberHome Modem Router HG-110 running firmware HG110_BH_V1.6 is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 63235

AFFECTED PRODUCTS

vendor:fiberhomemodel:hg-110scope:eqversion:0

Trust: 0.3

sources: BID: 63235

EXPLOIT

An attacker can exploit this issue with a web browser.
The following exploit is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/63235.py">/data/vulnerabilities/exploits/63235.py</a></li>

Trust: 0.3

sources: BID: 63235

PRICE

Free

Trust: 0.3

sources: BID: 63235

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 63235

CREDITS

Javier Perez

Trust: 0.3

sources: BID: 63235

EXTERNAL IDS

db:BIDid:63235

Trust: 0.3

sources: BID: 63235

REFERENCES

url:http://hk.fiberhomegroup.com/

Trust: 0.3

sources: BID: 63235

SOURCES

db:BIDid:63235

LAST UPDATE DATE

2022-07-27T09:42:49.933000+00:00


SOURCES UPDATE DATE

db:BIDid:63235date:2013-09-22T00:00:00

SOURCES RELEASE DATE

db:BIDid:63235date:2013-09-22T00:00:00