CVE-2025-44178
Last modified
CVE-2025-44178 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. DASAN GPON ONU H660WM H660WMR210825 is susceptible to improper access control under its default settings. Attackers can exploit this vulnerability to gain unauthorized access to sensitive information and modify its configuration via the UPnP protocol WAN sides without any authentication.. EPSS estimates a 0.27% chance of exploitation in the next 30 days.
Description
DASAN GPON ONU H660WM H660WMR210825 is susceptible to improper access control under its default settings. Attackers can exploit this vulnerability to gain unauthorized access to sensitive information and modify its configuration via the UPnP protocol WAN sides without any authentication.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2025-44178?
How severe is CVE-2025-44178?
How do I fix CVE-2025-44178?
Are you affected by CVE-2025-44178?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
