First published: Tue May 14 2024(Updated: )
TOTOLINK CP450 v4.1.0cu.747_B20191224 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in as root.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Totolink CP450 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-34211 is considered a critical severity vulnerability due to the hardcoded password allowing root access.
To fix CVE-2024-34211, update the TOTOLINK CP450 firmware to the latest version that removes the hardcoded password.
CVE-2024-34211 affects TOTOLINK CP450 devices running version 4.1.0cu.747_B20191224.
CVE-2024-34211 is a hardcoded password vulnerability that allows unauthorized root access.
CVE-2024-34211 was identified by security researchers focusing on IoT vulnerabilities.