First published: Tue May 14 2024(Updated: )
TOTOLINK EX200 V4.0.3c.7646_B20201211 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink EX200 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-31810 is considered a high severity vulnerability due to the presence of a hardcoded password for the root user.
To mitigate CVE-2024-31810, update the firmware of the TOTOLINK EX200 device to the latest version that removes the hardcoded password.
CVE-2024-31810 allows unauthorized access to the root account, potentially compromising the security and functionality of the TOTOLINK EX200 device.
Yes, CVE-2024-31810 can be exploited by attackers to gain control over affected TOTOLINK EX200 devices.
The vulnerability CVE-2024-31810 affects TOTOLINK EX200 versions V4.0.3c.7646_B20201211 and potentially earlier versions.