Vulnerabilities
Vulnerable Software
Contec:  >> Fxa2000  Security Vulnerabilities
Contec FXA3200 version 1.13.00 and under suffers from Insecure Permissions in the Wireless LAN Manager interface which allows malicious actors to execute Linux commands with root privilege via a hidden web page (/usr/www/ja/mnt_cmd.cgi).
CVSS Score
8.0
EPSS Score
0.002
Published
2022-09-26
Contec FXA3200 version 1.13 and under were discovered to contain a hard coded hash password for root stored in the component /etc/shadow. As the password strength is weak, it can be cracked in few minutes. Through this credential, a malicious actor can access the Wireless LAN Manager interface and open the telnet port then sniff the traffic or inject any malware.
CVSS Score
8.8
EPSS Score
0.001
Published
2022-09-26


Contact Us

Shodan ® - All rights reserved