PT-2018-17468 · Foxconn · Femto Ap-Fc4064-T
Drmnsamoliu
·
Publicado
2018-03-10
·
Atualizado
2021-09-09
·
CVE-2018-6312
CVSS v2.0
9.0
Alta
| Vetor | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Foxconn femtocell FEMTO AP-FC4064-T version AP GT B38 5.8.3lb15-W47 LTE Build 15
Description
A default weak password in a privileged account can be exploited to enable the TELNET service through the web interface, allowing root login without a password. This can lead to full system compromise and the disclosure of user communications. The
foxconn account has an 8-character lowercase alphabetic default password.Recommendations
For Foxconn femtocell FEMTO AP-FC4064-T version AP GT B38 5.8.3lb15-W47 LTE Build 15, change the default password of the
foxconn account to a strong password to prevent unauthorized access. As a temporary workaround, consider disabling the TELNET service via the web interface until a secure configuration or patch is available. Restrict access to the web interface to minimize the risk of exploitation.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Femto Ap-Fc4064-T