CVE-2021-46008: High severity TOTOLINK A3100r Firmware vulnerability
In totolink a3100r V5.9c.4577, the hard-coded telnet password can be discovered from official released firmware. An attacker, who has connected to the Wi-Fi, can easily telnet into the target with root shell if the telnet is function turned on.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
totolink a3100rto a version that resolves this vulnerability.Fixed in V5.9c.4577 - Configuration
Disable Telnet on the router, since having Telnet enabled allows an attacker connected to Wi‑Fi to telnet into the device with a root shell.
Telnet service enabled = false - Compensating control
Restrict access to the router’s Telnet interface from the network (e.g., block Telnet at firewall/ACL) to prevent Telnet root-shell access from connected clients.
Event History
Frequently Asked Questions
What is the vulnerability ID of this totolink a3100r firmware vulnerability?
The vulnerability ID is CVE-2021-46008.
What is the severity level of CVE-2021-46008?
The severity level of CVE-2021-46008 is high, with a score of 8.8.
How can the hard-coded telnet password be discovered in totolink a3100r V5.9c.4577?
The hard-coded telnet password can be discovered from the official released firmware of totolink a3100r V5.9c.4577.
What can an attacker do if they discover the hard-coded telnet password in totolink a3100r V5.9c.4577?
If an attacker has connected to the Wi-Fi, they can easily telnet into the target with root shell if the telnet function is turned on.
How can the totolink a3100r firmware vulnerability be fixed?
Updating to a patched version of the totolink a3100r firmware can fix the vulnerability.