PT-2015-7494 · Zte · Zte Zxhn H108N
Karn Ganeshen
·
Published
2015-12-30
·
Updated
2017-09-13
·
CVE-2015-7251
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
ZTE ZXHN H108N R1A versions before ZTE.bhs.ZXHNH108NR1A.k PE
Description
The issue allows remote attackers to obtain administrative access via a TELNET session due to a hardcoded password of
root for the root account.Recommendations
For versions before ZTE.bhs.ZXHNH108NR1A.k PE, change the hardcoded password of the
root account to prevent unauthorized access. As a temporary workaround, consider disabling TELNET sessions until a patch is available.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Zte Zxhn H108N