PT-2024-26439 · Tenda · Tenda I29
Published
2024-07-16
·
Updated
2024-08-01
·
CVE-2024-35338
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Tenda i29V1.0 version 1.0.0.5
Description
The issue is related to a hardcoded password for the root user. This means that the password is embedded directly into the software, potentially allowing unauthorized access.
Recommendations
For Tenda i29V1.0 version 1.0.0.5, consider changing the root password as soon as possible to mitigate the risk of unauthorized access. As a temporary workaround, restrict access to the device until a patch or update is available.
Exploit
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Tenda I29