In FiberHome VDSL2 Modem HG150-Ub_V3.0, Credentials of Admin are submitted in URL, which can be logged/sniffed.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Link | Tags |
---|---|
https://youtu.be/nHgstvq0rr8 | third party advisory exploit |
https://github.com/afaq1337/CVE-2022-36200 | third party advisory exploit |