Tenda i24V3.0si V3.0.0.5 Firmware V3.0.0.5 was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Tenda I24_Firmware
cpe:2.3:o:tenda:i24_firmware:3.0.0.5:*:*:*:*:*:*:*
|
— | — |
|
Tenda I24
cpe:2.3:h:tenda:i24:3.0:*:*:*:*:*:*:*
|
— | — |