Vulnerabilities > Use of Hard-coded Credentials
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-08-29 | CVE-2022-36611 | Use of Hard-coded Credentials vulnerability in Totolink A800R Firmware 4.1.2Cu.5137B20200730 TOTOLINK A800R V4.1.2cu.5137_B20200730 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-29 | CVE-2022-36612 | Use of Hard-coded Credentials vulnerability in Totolink A950Rg Firmware 4.1.2Cu.5204B20210112 TOTOLINK A950RG V4.1.2cu.5204_B20210112 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-29 | CVE-2022-36613 | Use of Hard-coded Credentials vulnerability in Totolink N600R Firmware 4.3.0Cu.7647B20210106 TOTOLINK N600R V4.3.0cu.7647_B20210106 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-29 | CVE-2022-36614 | Use of Hard-coded Credentials vulnerability in Totolink A860R Firmware 4.1.2Cu.5182B20201027 TOTOLINK A860R V4.1.2cu.5182_B20201027 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-29 | CVE-2022-36615 | Use of Hard-coded Credentials vulnerability in Totolink A3000Ru Firmware 4.1.2Cu.5185B20201128 TOTOLINK A3000RU V4.1.2cu.5185_B20201128 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-29 | CVE-2022-36616 | Use of Hard-coded Credentials vulnerability in Totolink A810R Firmware 4.1.2Cu.5182B20201026 TOTOLINK A810R V4.1.2cu.5182_B20201026 and V5.9c.4050_B20190424 was discovered to contain a hardcoded password for root at /etc/shadow.sample. | 7.8 |
2022-08-25 | CVE-2022-31269 | Use of Hard-coded Credentials vulnerability in Nortekcontrol Emerge E3 Firmware 0.3207E/0.3207P/0.3209C Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors. | 8.2 |
2022-08-21 | CVE-2022-30036 | Use of Hard-coded Credentials vulnerability in Malighting Grandma2 Light Firmware MA Lighting grandMA2 Light has a password of root for the root account. | 8.8 |
2022-08-19 | CVE-2022-36171 | Use of Hard-coded Credentials vulnerability in Mapgis Igserver 10.5.6.11 MapGIS IGServer 10.5.6.11 is vulnerable to Arbitrary file deletion. | 8.1 |
2022-08-19 | CVE-2022-36170 | Use of Hard-coded Credentials vulnerability in Mapgis Igserver 10.5 MapGIS 10.5 Pro IGServer has hardcoded credentials in the front-end and can lead to escalation of privileges and arbitrary file deletion. | 8.8 |