PT-2022-23237 · Contec · Contec Fxa3200

·

CVE-2022-36159

·

Published

2022-09-15

·

Updated

2022-10-03

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Contec FXA3200 versions 1.13 and under
Description The issue concerns a hard-coded hash password for the root user stored in the /etc/shadow component. This password is weak and can be cracked in a few minutes. Once the password is obtained, a malicious actor can access the Wireless LAN Manager interface, open the telnet port, and then sniff traffic or inject malware.
Recommendations For Contec FXA3200 versions 1.13 and under, consider changing the hard-coded hash password for the root user to a stronger one and restrict access to the Wireless LAN Manager interface until a patch is available. As a temporary workaround, disable the telnet port to minimize the risk of exploitation.

Exploit

Fix

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-36159

Affected Products

Contec Fxa3200