PT-2019-14802 · Petwant+1 · Petwant Pf-103+1
Publicado
2019-12-13
·
Atualizado
2021-07-26
·
CVE-2019-16734
CVSS v2.0
10
Crítica
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Petwant PF-103 firmware version 4.3.2.50
Petalk AI version 3.2.2.30
Description
The issue allows remote attackers to execute arbitrary system commands as the root user due to the use of default credentials for the TELNET server.
Recommendations
For Petwant PF-103 firmware version 4.3.2.50, change the default TELNET credentials to prevent unauthorized access.
For Petalk AI version 3.2.2.30, update the TELNET server configuration to use secure credentials instead of default ones.
Exploit
Correção
Using Hardcoded Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Petalk Ai
Petwant Pf-103