Arris DG860A, TG862A, and TG862G devices with firmware TS0703128_100611 through TS0705125D_031115 have a hardcoded administrator password derived from a serial number, which makes it easier for remote attackers to obtain access via the web management interface, SSH, TELNET, or SNMP.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/419568 | third party advisory us government resource |