Vulnerabilities > CVE-2015-7280 - Credentials Management vulnerability in Readynet Solutions Wrt300N-Dd Firmware 1.0.26

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
readynet-solutions
CWE-255
critical

Summary

The web administration interface on ReadyNet WRT300N-DD devices with firmware 1.0.26 has a default password of admin for the admin account, which allows remote attackers to obtain administrative privileges by leveraging a LAN session.

Common Weakness Enumeration (CWE)