EIP-2026-101507
PRE-CVE4 TOTOLINK Router Models - Backdoor Credentials
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101507. PoCs published by Pierre Kim.
AI-analyzed exploit summary This advisory details backdoor credentials (root/12345 and onlime_r/12345) in four TOTOLINK router models, allowing unauthorized telnet access with root privileges. The vulnerability stems from hardcoded credentials in /etc/passwd_orig or /etc/passwd.org, copied to /var/passwd during boot.
Description
4 TOTOLINK Router Models - Backdoor Credentials
Exploits (1)
This advisory details backdoor credentials (root/12345 and onlime_r/12345) in four TOTOLINK router models, allowing unauthorized telnet access with root privileges. The vulnerability stems from hardcoded credentials in /etc/passwd_orig or /etc/passwd.org, copied to /var/passwd during boot.