PT-2017-18518 · Be · Be126 Wifi Repeater

Publicado

2017-09-20

·

Atualizado

2017-09-28

·

CVE-2017-8772

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions BE126 WIFI repeater version 1.0
Description The issue allows an attacker to log into the device using default credentials as root, with the username: root and password: root, since telnet is open by default. This enables the attacker to read the entire file system, write to the file system, or execute any desired code, which could be malicious.
Recommendations For BE126 WIFI repeater version 1.0, change the default root password to a strong and unique password to prevent unauthorized access. Additionally, consider disabling telnet and using a more secure protocol for remote access. Restrict access to the file system and limit execution privileges to minimize the risk of exploitation.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-8772

Produtos afetados

Be126 Wifi Repeater