Totolink A3600R_Firmware V4.1.2cu.5182_B20201102 contains a hard code password for root in /etc/shadow.sample.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
http://www.totolink.cn/home/menu/detail.html?menu_listtpl=download&id=63&ids=36image-20220606105532193 | product vendor advisory |
https://github.com/cilan2/iot/blob/main/1.md | third party advisory exploit |