Vulnerabilities > Realtek > Xpon Rtl9601D Software Development KIT

DATE CVE VULNERABILITY TITLE RISK
2021-03-25 CVE-2021-27372 Insufficiently Protected Credentials vulnerability in Realtek Xpon Rtl9601D Software Development KIT 1.9
Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the device with root permissions via the build-in network monitoring tool and execute arbitrary commands.
network
low complexity
realtek CWE-522
critical
9.8