- Description
- A vulnerability classified as problematic has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected is an unknown function of the file /goform/portForwardingCfg of the component Port Forwarding Submenu. The manipulation of the argument pf_Description leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
- Source
- cna@vuldb.com
- NVD status
- Analyzed
- Products
- an5506-01-a_firmware
CVSS 4.0
- Type
- Secondary
- Base score
- 4.8
- Impact score
- -
- Exploitability score
- -
- Vector string
- CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity
- MEDIUM
CVSS 3.1
- Type
- Primary
- Base score
- 4.8
- Impact score
- 2.7
- Exploitability score
- 1.7
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Secondary
- Base score
- 3.3
- Impact score
- 2.9
- Exploitability score
- 6.4
- Vector string
- AV:N/AC:L/Au:M/C:N/I:P/A:N
- Hype score
- Not currently trending
- CVE-2025-1614 A vulnerability classified as problematic has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected is an unknown function of the file /goform/portForwardingCfg … https://t.co/OjuWsZbUhh - @CVEnew - 24 Feb 2025 - 576 Impressions - 0 Retweets - 0 Likes - 0 Bookmarks - 0 Replies - 0 Quotes 
- CVE-2025-1614 Cross-Site Scripting in FiberHome AN5506-01A ONU GPON via Port Forwarding Submenu https://t.co/uxgP85rhZj - @VulmonFeeds - 24 Feb 2025 - 53 Impressions - 0 Retweets - 0 Likes - 0 Bookmarks - 0 Replies - 0 Quotes 
- New post from https://t.co/uXvPWJy6tj (CVE-2025-1614 | FiberHome AN5506-01A ONU GPON RP2511 Port Forwarding Submenu portForwardingCfg pf_Description cross site scripting) has been published on https://t.co/YzxAZEa8YI - @WolfgangSesin - 23 Feb 2025 - 24 Impressions - 0 Retweets - 0 Likes - 0 Bookmarks - 0 Replies - 0 Quotes 
[
  {
    "nodes": [
      {
        "negate": false,
        "cpeMatch": [
          {
            "criteria": "cpe:2.3:o:fiberhome:an5506-01-a_firmware:rp2511:*:*:*:*:*:*:*",
            "vulnerable": true,
            "matchCriteriaId": "D6C62ECD-22AC-4C9B-8F91-4BFAFCA9DDF3"
          }
        ],
        "operator": "OR"
      },
      {
        "negate": false,
        "cpeMatch": [
          {
            "criteria": "cpe:2.3:h:fiberhome:an5506-01-a:-:*:*:*:*:*:*:*",
            "vulnerable": false,
            "matchCriteriaId": "8853CE67-2DD9-4217-B1ED-9767A3E46DE1"
          }
        ],
        "operator": "OR"
      }
    ],
    "operator": "AND"
  }
]