CVE-2024-35338: Critical severity tenda i29 firmware vulnerability
Published Jul 16, 2024
·Updated
Tenda i29V1.0 V1.0.0.5 was discovered to contain a hardcoded password for root.
Affected Software
2 affected components
All of the following
Tendacn I29 Firmware=1.0.0.5
Tendacn I29=1.0
Event History
Jul 16, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-35338?
CVE-2024-35338 is considered a high-severity vulnerability due to the presence of a hardcoded root password.
2
How do I fix CVE-2024-35338?
To fix CVE-2024-35338, users should update the Tenda i29 firmware to a version that resolves the hardcoded password issue.
3
What devices are impacted by CVE-2024-35338?
CVE-2024-35338 specifically affects Tenda i29 devices running firmware version 1.0.0.5.
4
Can CVE-2024-35338 be exploited remotely?
Yes, CVE-2024-35338 can be exploited remotely if the attacker has access to the vulnerable device's network.
5
What are the potential risks associated with CVE-2024-35338?
The risks associated with CVE-2024-35338 include unauthorized access to the device and potential compromise of the entire network.