CVE-2024-35396
cp900, cp900l firmware
TOTOLINK CP900L v4.1.5cu.798_B20221228 was discovered to contain a hardcoded password for telnet in /web_cste/cgi-bin/product.ini, which allows attackers to log in as root.
- CVSS
- 9.8
- EPSS
- 0.54% 42.3% percentile
- CISA KEV
- Not listed
- Published
- 2024.05.25