A certain Comcast Business Gateway configuration of the SMC SMCD3G-CCR with firmware before 1.4.0.49.2 has a default password of D0nt4g3tme for the mso account, which makes it easier for remote attackers to obtain administrative access via the (1) web interface or (2) TELNET interface.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://securityreason.com/securityalert/8066 | third party advisory |
http://seclists.org/bugtraq/2011/Feb/36 | mailing list |
http://secunia.com/advisories/43199 | third party advisory |
http://www.securityfocus.com/bid/46215 | vdb entry |
http://www.exploit-db.com/exploits/16123/ | exploit |
http://www.securityfocus.com/archive/1/516205/100/0/threaded | mailing list |
https://www.trustwave.com/spiderlabs/advisories/TWSL2011-002.txt | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/65184 | vdb entry |