CVE-2018-5770

An issue was discovered on Tenda AC15 devices. A remote, unauthenticated attacker can make a request to /goform/telnet, creating a telnetd service on the device. This service is password protected; however, several default accounts exist on the device that are root accounts, which can be used to log in.
References
Configurations

Configuration 1


Information

Published : 2018-03-20 03:29

Updated : 2019-10-03 12:03


NVD link : CVE-2018-5770

Mitre link : CVE-2018-5770

Products Affected
No products.
CWE
CWE-1188

Insecure Default Initialization of Resource