CVE-2021-47744: Cypress Solutions CTM-200/CTM-ONE 1.3.6 Hard-coded Credentials Remote Root
Cypress Solutions CTM-200/CTM-ONE 1.3.6 contains hard-coded credentials vulnerability in Linux distribution that exposes root access. Attackers can exploit the static 'Chameleon' password to gain remote root access via Telnet or SSH on affected devices.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-47744?
CVE-2021-47744 is considered a high severity vulnerability due to its potential for remote root access via hard-coded credentials.
How do I fix CVE-2021-47744?
To remediate CVE-2021-47744, update the device firmware to a version that eliminates the hard-coded 'Chameleon' password.
What are the consequences of exploiting CVE-2021-47744?
Exploiting CVE-2021-47744 allows an attacker to gain remote root access, compromising the entire system and its data.
Which devices are affected by CVE-2021-47744?
CVE-2021-47744 affects Cypress Solutions CTM-200 and CTM-ONE devices running version 1.3.6.
How can I identify if CVE-2021-47744 is present on my device?
To identify CVE-2021-47744, check if your device is running the vulnerable version 1.3.6 and verify if it has the hard-coded 'Chameleon' password.