Realtek RTL8111EP-CG/RTL8111FP-CG - Use of Hard-coded Credentials
CVE-2022-32967
2.1LOW
What is CVE-2022-32967?
RTL8111EP-CG/RTL8111FP-CG DASH function has hard-coded password. An unauthenticated physical attacker can use the hard-coded default password during system reboot triggered by other user, to acquire partial system information such as serial number and server information.
Affected Version(s)
RTL8111EP-CG <= 3.0.0.2019090
RTL8111EP-CG 5.0.10
RTL8111FP-CG <= 3.0.0.2019090