CVE-2025-29525
BaseFortify
Publication date: 2025-08-25
Last updated on: 2025-08-26
Assigner: MITRE
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| dasantech | gpon_onu_h660wm | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1392 | The product uses default credentials (such as passwords or cryptographic keys) for potentially critical functionality. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves insecure default credentials in the control panel of the DASAN GPON ONU H660WM modem, specifically in OS version H660WMR210825 and hardware version DS-E5-583-A1. This means that the modem comes with default usernames and passwords that are not secure and could be easily exploited by attackers.
How can this vulnerability impact me? :
The insecure default credentials could allow unauthorized users to access the modem's control panel, potentially leading to unauthorized configuration changes, interception of network traffic, or other malicious activities that compromise the security and privacy of the network.