First published: Sun Aug 28 2022(Updated: )
TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink A800r Firmware | =4.1.2cu.5137_b20200730 | |
TOTOLink A800R |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36611 is high with a severity value of 7.8.
CVE-2022-36611 affects TOTOLINK A800R Firmware version 4.1.2cu.5137_b20200730 by exposing a hardcoded password for root at /etc/shadow.sample.
No, TOTOLINK A800R is not vulnerable to CVE-2022-36611.
To fix CVE-2022-36611, it is recommended to update TOTOLINK A800R Firmware to a version that does not contain the hardcoded password.
More information about CVE-2022-36611 can be found at https://github.com/whiter6666/CVE/blob/main/TOTOLINK_A800R/hard_code.md