The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user accounts with default passwords, including a hardcoded service account with the username true and password true. These accounts can be used to login to the web interface, exploit authenticated command injections and change router settings for malicious purposes.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-05-02T16:15:47
Updated: 2024-08-05T21:20:50.379Z
Reserved: 2019-05-02T00:00:00
Link: CVE-2017-18374
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-05-02T17:29:01.490
Modified: 2024-11-21T03:19:57.837
Link: CVE-2017-18374
Redhat
No data.