PT-2023-23914 · Tp Link · Archer C55+1
CVE-2023-32619
·
Publicado
2023-09-06
·
Atualizado
2024-09-26
CVSS v3.1
8.8
Alta
| Vetor | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Archer C50 versions prior to Archer C50(JP) V3 230505
Archer C55 versions prior to Archer C55(JP) V1 230506
Description
The affected devices use hard-coded credentials to login, which may allow a network-adjacent unauthenticated attacker to execute an arbitrary OS command.
Recommendations
For Archer C50 versions prior to Archer C50(JP) V3 230505, update to Archer C50(JP) V3 230505 or later.
For Archer C55 versions prior to Archer C55(JP) V1 230506, update to Archer C55(JP) V1 230506 or later.
Correção
Using Hardcoded Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Archer C50
Archer C55