ZeroHour

CVE-2018-15556

PoC ×2
CVSS 3.0
9.8 critical
EPSS
3%p88
Published
()
Modified
Description

The Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 allows login with root level access with the user "root" and an empty password by using the enabled onboard UART headers.

Vendors
actiontec
Products
web6000q firmware
Weakness
CWE-287
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.