PT-2024-26439 · Tenda · Tenda I29

Published

2024-07-16

·

Updated

2024-08-01

·

CVE-2024-35338

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda i29V1.0 version 1.0.0.5
Description The issue is related to a hardcoded password for the root user. This means that the password is embedded directly into the software, potentially allowing unauthorized access.
Recommendations For Tenda i29V1.0 version 1.0.0.5, consider changing the root password as soon as possible to mitigate the risk of unauthorized access. As a temporary workaround, restrict access to the device until a patch or update is available.

Exploit

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2024-35338

Affected Products

Tenda I29