CVE-2017-14147 EXPLOIT
9.8
CRITICAL · CVSS 3.0 · EPSS 65.6% (pctl 99)
Patch early
A public exploit exists.
Description
An issue was discovered on FiberHome User End Routers Bearing Model Number AN1020-25 which could allow an attacker to easily restore a router to its factory settings by simply browsing to the link http://[Default-Router-IP]/restoreinfo.cgi & execute it. Due to improper authentication on this page, the software accepts the request hence allowing attacker to reset the router to its default configurations which later could allow attacker to login to router by using default username/password.
Scoring
| CVSS | 9.8 (CRITICAL, v3.0) |
|---|---|
| Vector | CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 65.62% — more likely to be exploited than 99% of all CVEs |
| Weakness | CWE-287 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2017-09-07 |
| Last modified | 2026-06-17 |
Affected (2)
| Vendor | Product |
|---|---|
| fiberhome | adsl an1020-25 |
| fiberhome | adsl an1020-25 firmware |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | FiberHome ADSL AN1020-25 - Improper Access Restrictions | 2017-09-05 |
References
- http://packetstormsecurity.com/files/144022/FiberHome-Unauthenticated-ADSL-Router-Factory-Reset.html
- https://beefaaubee09.github.io/fiberhome-adsls-dos/
- https://www.exploit-db.com/exploits/42649/
- http://packetstormsecurity.com/files/144022/FiberHome-Unauthenticated-ADSL-Router-Factory-Reset.html
- https://beefaaubee09.github.io/fiberhome-adsls-dos/
- https://www.exploit-db.com/exploits/42649/
→ the Explorer · watch your stack · NVD