First published: Tue Jan 30 2024(Updated: )
TOTOLINK A8000RU v7.1cu.643_B20200521 was discovered to contain a hardcoded password for root stored in /etc/shadow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Totolink A8000ru Firmware | =7.1cu.643_b20200521 | |
TOTOLINK A8000RU |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-24324 has a high severity due to the presence of a hardcoded password for the root user.
To fix CVE-2024-24324, update the TOTOLINK A8000RU firmware to a version that does not have the hardcoded password.
The risks of CVE-2024-24324 include unauthorized access to the router's admin interface and potential compromise of the network.
CVE-2024-24324 affects TOTOLINK A8000RU firmware version 7.1cu.643_B20200521.
Currently, there is no known workaround for CVE-2024-24324; the recommended solution is to update the firmware.