CVE-2024-8580
HIGHTOTOLINK AC1200 T8 4.1.5cu.861_B20230220 - Hard-Coded Password
Title source: llmDescription
A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects unknown code of the file /etc/shadow.sample. The manipulation leads to use of hard-coded password. The attack can be initiated remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
References (5)
Scores
CVSS v3
8.1
EPSS
0.0015
EPSS Percentile
35.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
total
Details
CWE
CWE-259
Status
published
Products (1)
totolink/t8_firmware
4.1.5cu.861_b20230220
Published
Sep 08, 2024
Tracked Since
Feb 18, 2026