First published: Wed Sep 18 2024(Updated: )
Victure PC420 1.1.39 was discovered to contain a hardcoded root password which is stored in plaintext.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Victure PC420 | ||
All of | ||
Victure PC420 | =1.1.39 | |
Victure PC420 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-41610 is classified as high due to the presence of a hardcoded root password stored in plaintext.
To fix CVE-2023-41610, update to a patched version of the firmware that removes the hardcoded password and does not store sensitive information in plaintext.
CVE-2023-41610 allows an attacker to gain unauthorized root access to the device, potentially leading to data theft or device manipulation.
CVE-2023-41610 specifically affects Victure PC420 firmware version 1.1.39, so users of other versions should verify their firmware for similar vulnerabilities.
If you cannot update your firmware, consider limiting network exposure and changing default passwords to improve security against CVE-2023-41610.