Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-46008

Опубликовано: 30 мар. 2022
Источник: nvd
CVSS3: 8.8
CVSS2: 7.9
EPSS Низкий

Описание

In totolink a3100r V5.9c.4577, the hard-coded telnet password can be discovered from official released firmware. An attacker, who has connected to the Wi-Fi, can easily telnet into the target with root shell if the telnet is function turned on.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:totolink:a3100r_firmware:5.9c.4577:*:*:*:*:*:*:*
cpe:2.3:h:totolink:a3100r:-:*:*:*:*:*:*:*

EPSS

Процентиль: 38%
0.00168
Низкий

8.8 High

CVSS3

7.9 High

CVSS2

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 8.8
github
почти 4 года назад

In totolink a3100r V5.9c.4577, the hard-coded telnet password can be discovered from official released firmware. An attacker, who has connected to the Wi-Fi, can easily telnet into the target with root shell if the telnet is function turned on.

EPSS

Процентиль: 38%
0.00168
Низкий

8.8 High

CVSS3

7.9 High

CVSS2

Дефекты

CWE-798