Hardcoded Password Vulnerability in TOTOLINK N600R Router
CVE-2022-36613
7.8HIGH
What is CVE-2022-36613?
The TOTOLINK N600R router is affected by a security vulnerability due to a hardcoded password embedded in the device's firmware scripts. This flaw allows unauthorized access to the system by exploiting the static password located in the /etc/shadow.sample file, potentially compromising the integrity and confidentiality of the network. Users are urged to review their device settings and apply security patches to mitigate this risk.