Vulnerability Details CVE-2021-46008
In totolink a3100r V5.9c.4577, the hard-coded telnet password can be discovered from official released firmware. An attacker, who has connected to the Wi-Fi, can easily telnet into the target with root shell if the telnet is function turned on.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.7%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 7.9
Products affected by CVE-2021-46008
-
cpe:2.3:h:totolink:a3100r:-
-
cpe:2.3:o:totolink:a3100r_firmware:5.9c.4577