PT-2022-23237 · Contec · Contec Fxa3200
0Xsamy
+2
·
Published
2022-09-15
·
Updated
2022-10-03
·
CVE-2022-36159
CVSS v3.1
8.8
High
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Contec FXA3200 versions 1.13 and under
Description
The issue concerns a hard-coded hash password for the root user stored in the
/etc/shadow component. This password is weak and can be cracked in a few minutes. Once the password is obtained, a malicious actor can access the Wireless LAN Manager interface, open the telnet port, and then sniff traffic or inject malware.Recommendations
For Contec FXA3200 versions 1.13 and under, consider changing the hard-coded hash password for the root user to a stronger one and restrict access to the Wireless LAN Manager interface until a patch is available. As a temporary workaround, disable the telnet port to minimize the risk of exploitation.
Exploit
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Contec Fxa3200