TOTOLINK CP300 V2.0.4-B20201102 was discovered to contain a hardcoded password vulnerability in /etc/shadow.sample, which allows attackers to log in as root.
2024-06-03T21:15:08.453
2025-05-30T16:50:13.077
Analyzed
CVSSv3.1: 9.8 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | totolink | cp300_firmware | 2.0.4-b20201102 | Yes |
Hardware | totolink | cp300 | 2.0 | No |