On ORing net IAP-420(+) with FW version 2.0m a telnet server is enabled by default and cannot permanently be disabled. You can connect to the device via LAN or WiFi with hardcoded credentials and get an administrative shell. These credentials are reset to defaults with every reboot.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://mads.uniud.it/2022/09/lord-of-the-orings/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2022-10-21T12:30:12.353547Z
Updated: 2024-09-16T20:52:32.453Z
Reserved: 2022-09-13T00:00:00
Link: CVE-2022-3203
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2022-10-21T13:15:09.593
Modified: 2022-12-07T03:16:09.250
Link: CVE-2022-3203
Redhat
No data.