TOTOLINK A3002RU V3.0.0-B20220304.1804 has a hardcoded password for root in /etc/shadow.sample.
References
Link | Resource |
---|---|
https://github.com/1337536723/iot/blob/main/totolink/A3002RU.md | Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2022-08-10 13:15
Updated : 2022-08-12 14:03
NVD link : CVE-2022-35491
Mitre link : CVE-2022-35491
JSON object : View
CWE
CWE-798
Use of Hard-coded Credentials
Products Affected
totolink
- a3002ru
- a3002ru_firmware