In totolink a3100r V5.9c.4577, the hard-coded telnet password can be discovered from official released firmware. An attacker, who has connected to the Wi-Fi, can easily telnet into the target with root shell if the telnet is function turned on.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-03-30T22:20:45

Updated: 2024-08-04T04:54:31.268Z

Reserved: 2022-01-03T00:00:00

Link: CVE-2021-46008

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-03-30T23:15:07.863

Modified: 2022-04-05T19:08:42.930

Link: CVE-2021-46008

cve-icon Redhat

No data.