PT-2022-23237 · Contec · Contec Fxa3200

0Xsamy

+2

·

Published

2022-09-15

·

Updated

2022-10-03

·

CVE-2022-36159

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Contec FXA3200 versions 1.13 and under
Description The issue concerns a hard-coded hash password for the root user stored in the /etc/shadow component. This password is weak and can be cracked in a few minutes. Once the password is obtained, a malicious actor can access the Wireless LAN Manager interface, open the telnet port, and then sniff traffic or inject malware.
Recommendations For Contec FXA3200 versions 1.13 and under, consider changing the hard-coded hash password for the root user to a stronger one and restrict access to the Wireless LAN Manager interface until a patch is available. As a temporary workaround, disable the telnet port to minimize the risk of exploitation.

Exploit

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2022-36159

Affected Products

Contec Fxa3200