CVE-2025-53754: CWE-798: Use of Hard-coded Credentials in Digisol XPON ONU Wi-Fi Router (DG-GR6821AC)
This vulnerability exists in Digisol DG-GR6821AC Router due to hard-coded Root Access Credentials in system configuration of the device firmware. An attacker with physical access could exploit this vulnerability by extracting the firmware and analyzing the binary data to obtain the stored root access credentials. Successful exploitation of this vulnerability could allow the attacker to gain admin access to the targeted device.
CVE-2025-53754: CWE-798: Use of Hard-coded Credentials in Digisol XPON ONU Wi-Fi Router (DG-GR6821AC)
Description
This vulnerability exists in Digisol DG-GR6821AC Router due to hard-coded Root Access Credentials in system configuration of the device firmware. An attacker with physical access could exploit this vulnerability by extracting the firmware and analyzing the binary data to obtain the stored root access credentials. Successful exploitation of this vulnerability could allow the attacker to gain admin access to the targeted device.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- CERT-In
- Date Reserved
- 2025-07-09T11:17:31.819Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 68778d7fa83201eaacda0604
Added to database: 7/16/2025, 11:31:11 AM
Last updated: 7/16/2025, 11:31:11 AM
Views: 1
Related Threats
CVE-2025-53756: CWE-319: Cleartext Transmission of Sensitive Information in Digisol XPON ONU Wi-Fi Router (DG-GR6821AC)
HighCVE-2025-53755: CWE-312: Cleartext Storage of Sensitive Information in Digisol XPON ONU Wi-Fi Router (DG-GR6821AC)
MediumCVE-2025-54051: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in bPlugins LightBox Block
MediumCVE-2025-54050: CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in CyberChimps Responsive Addons for Elementor
MediumCVE-2025-54047: CWE-862 Missing Authorization in QuanticaLabs Cost Calculator
MediumActions
External Links
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.