Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
TOTOLINK X2000R Administrative shadow.sample default credentials
Vulnerability Description
A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
CWE-1392
Vulnerability Title
TOTOLINK X2000R 安全漏洞
Vulnerability Description
TOTOLINK X2000R是中国吉翁电子(TOTOLINK)公司的一款无线路由器。 TOTOLINK X2000R 2.0.0及之前版本存在安全漏洞,该漏洞源于使用默认凭据,可能导致本地攻击。
CVSS Information
N/A
Vulnerability Type
N/A