CVE-2008-1264

Linksys WRT54G - Unauthenticated Sensitive File Access via Default FTP Credentials

Title source: llm
STIX 2.1

Description

The Linksys WRT54G router has "admin" as its default FTP password, which allows remote attackers to access sensitive files including nvram.cfg, a file that lists all HTML documents, and an ELF executable file.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/489009/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/41126

Scores

EPSS 0.0052
EPSS Percentile 67.1%

Details

CWE
CWE-287
Status published
Products (1)
linksys/wrt54g
Published Mar 10, 2008
Tracked Since Feb 18, 2026