Vulnerabilities > Use of Hard-coded Credentials

DATE CVE VULNERABILITY TITLE RISK
2022-08-29 CVE-2022-36611 Use of Hard-coded Credentials vulnerability in Totolink A800R Firmware 4.1.2Cu.5137B20200730
TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-29 CVE-2022-36612 Use of Hard-coded Credentials vulnerability in Totolink A950Rg Firmware 4.1.2Cu.5204B20210112
TOTOLINK A950RG V4.1.2cu.5204_B20210112 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-29 CVE-2022-36613 Use of Hard-coded Credentials vulnerability in Totolink N600R Firmware 4.3.0Cu.7647B20210106
TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-29 CVE-2022-36614 Use of Hard-coded Credentials vulnerability in Totolink A860R Firmware 4.1.2Cu.5182B20201027
TOTOLINK A860R V4.1.2cu.5182_B20201027 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-29 CVE-2022-36615 Use of Hard-coded Credentials vulnerability in Totolink A3000Ru Firmware 4.1.2Cu.5185B20201128
TOTOLINK A3000RU V4.1.2cu.5185_B20201128 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-29 CVE-2022-36616 Use of Hard-coded Credentials vulnerability in Totolink A810R Firmware 4.1.2Cu.5182B20201026
TOTOLINK A810R V4.1.2cu.5182_B20201026 and V5.9c.4050_B20190424 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
local
low complexity
totolink CWE-798
7.8
2022-08-25 CVE-2022-31269 Use of Hard-coded Credentials vulnerability in Nortekcontrol Emerge E3 Firmware 0.3207E/0.3207P/0.3209C
Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors.
network
low complexity
nortekcontrol CWE-798
8.2
2022-08-21 CVE-2022-30036 Use of Hard-coded Credentials vulnerability in Malighting Grandma2 Light Firmware
MA Lighting grandMA2 Light has a password of root for the root account.
low complexity
malighting CWE-798
8.8
2022-08-19 CVE-2022-36171 Use of Hard-coded Credentials vulnerability in Mapgis Igserver 10.5.6.11
MapGIS IGServer 10.5.6.11 is vulnerable to Arbitrary file deletion.
network
low complexity
mapgis CWE-798
8.1
2022-08-19 CVE-2022-36170 Use of Hard-coded Credentials vulnerability in Mapgis Igserver 10.5
MapGIS 10.5 Pro IGServer has hardcoded credentials in the front-end and can lead to escalation of privileges and arbitrary file deletion.
network
low complexity
mapgis CWE-798
8.8