PT-2026-1679 · V Sol · V-Sol Gpon/Epon Olt Platform

Published

2026-01-07

·

Updated

2026-01-08

·

CVE-2019-25282

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions V-SOL GPON/EPON OLT Platform versions 2.03 and 2.03.62R IPv6
Description The V-SOL GPON/EPON OLT Platform is affected by an open redirect issue in the script. This allows attackers to manipulate the parent GET parameter and redirect logged-in users to arbitrary websites due to improper input validation in the redirect mechanism. The issue involves the bindProfile.html script.
Recommendations Versions prior to 2.03.62R IPv6 should be updated. Versions 2.03 and 2.03.62R IPv6 should ensure proper input validation for the parent GET parameter to prevent redirection to malicious websites.

Exploit

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2019-25282

Affected Products

V-Sol Gpon/Epon Olt Platform