PT-2019-14802 · Petwant+1 · Petwant Pf-103+1
Published
2019-12-13
·
Updated
2021-07-26
·
CVE-2019-16734
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Petwant PF-103 firmware version 4.3.2.50
Petalk AI version 3.2.2.30
Description
The issue allows remote attackers to execute arbitrary system commands as the root user due to the use of default credentials for the TELNET server.
Recommendations
For Petwant PF-103 firmware version 4.3.2.50, change the default TELNET credentials to prevent unauthorized access.
For Petalk AI version 3.2.2.30, update the TELNET server configuration to use secure credentials instead of default ones.
Exploit
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Petalk Ai
Petwant Pf-103