First published: Mon Feb 10 2025(Updated: )
Hardcoded credentials in Tenda W18E V16.01.0.8(1625) allows unauthenticated remote attackers to gain root access to the device over the telnet service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda W18e Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-46436 is high due to the potential for unauthenticated remote access to the device.
To fix CVE-2024-46436, change the default credentials and disable the telnet service if it's not needed.
CVE-2024-46436 affects Tenda W18E devices running firmware version V16.01.0.8(1625) or earlier.
Yes, CVE-2024-46436 can be exploited remotely by attackers because of hardcoded credentials.
Users of affected Tenda W18E devices may face unauthorized access and potential compromise of their network.