CVE-2019-25282 MEDIUM

CVE-2019-25282: V-SOL GPON/EPON OLT Platform V2.03.62R_IPv6 v2.03 Open Redirect via bindProfile.html

Vendor Guangzhou V
Product V-SOL GPON/EPON OLT Platform
Weakness CWE-601 · Open redirect
Published January 7, 2026
Last update January 8, 2026

CVSS base score

5.1/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction
Confidentiality
Integrity

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N

What the vulnerability does

01Description

V-SOL GPON/EPON OLT Platform v2.03 contains an open redirect vulnerability in the script that allows attackers to manipulate the 'parent' GET parameter. Attackers can craft malicious links that redirect logged-in users to arbitrary websites by exploiting improper input validation in the redirect mechanism.

Key dates

02Disclosure timeline

January 7, 2026 CVE published
January 8, 2026 Record updated