PT-2024-26439 · Tenda · Tenda I29

CVE-2024-35338

·

Published

2024-07-16

·

Updated

2024-08-01

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Tenda i29V1.0 version 1.0.0.5
Description The issue is related to a hardcoded password for the root user. This means that the password is embedded directly into the software, potentially allowing unauthorized access.
Recommendations For Tenda i29V1.0 version 1.0.0.5, consider changing the root password as soon as possible to mitigate the risk of unauthorized access. As a temporary workaround, restrict access to the device until a patch or update is available.

Exploit

Fix

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-35338

Affected Products

Tenda I29