Hardcoded Password Vulnerability in TOTOLINK Router Products
CVE-2022-36610
7.8HIGH
Summary
The TOTOLINK A720R router version V4.1.5cu.532_B20210610 has been found to include a hardcoded root password located in a sample shadow file. This security flaw can potentially allow unauthorized access to the device, compromising network security and exposing users to various cyber threats.
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved