CVE-2021-31505: Arlo Q Plus SSH Use of Hard-coded Credentials Privilege Escalation Vulnerability
This vulnerability allows attackers with physical access to escalate privileges on affected installations of Arlo Q Plus 1.9.0.3278. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SSH service. The device can be booted into a special operation mode where hard-coded credentials are accepted for SSH authentication. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root. Was ZDI-CAN-12890.
Other sources
This vulnerability allows attackers with physical access to escalate privileges on affected installations of Arlo Q Plus. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SSH service. The device can be booted into a special operation mode where hard-coded credentials are accepted for SSH authentication. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-31505?
CVE-2021-31505 is categorized as a high-severity vulnerability due to its potential for privilege escalation without authentication.
How do I fix CVE-2021-31505?
To mitigate CVE-2021-31505, update the Arlo Q Plus firmware to a version that addresses this vulnerability.
What systems are affected by CVE-2021-31505?
CVE-2021-31505 affects Arlo Q Plus devices running firmware version 1.9.0.3_278.
Who is affected by CVE-2021-31505?
Individuals or organizations using the Arlo Q Plus devices with the specified firmware version are vulnerable to CVE-2021-31505.
What type of vulnerability is CVE-2021-31505?
CVE-2021-31505 is a privilege escalation vulnerability that can be exploited through physical access to the device.