Telesquare SDT-CS3B1 and SDT-CW3B1 devices through 1.2.0 have a default factory account. Remote attackers can obtain access to the device via TELNET using a hardcoded account.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://www.boho.or.kr/data/secNoticeView.do?bulletin_writing_sequence=27284 | third party advisory |
https://www.fortiguard.com/zeroday/FG-VD-18-106 | third party advisory |