CVE-2022-36610
HIGHTotolink A720r Firmware - Hard-coded Credentials
Title source: ruleDescription
TOTOLINK A720R V4.1.5cu.532_B20210610 was discovered to contain a hardcoded password for root at /etc/shadow.sample.
Scores
CVSS v3
7.8
EPSS
0.0006
EPSS Percentile
17.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-798
Status
published
Affected Products (1)
totolink/a720r_firmware
Timeline
Published
Aug 29, 2022
Tracked Since
Feb 18, 2026