vendor:
C1000A Modem
by:
Joseph McDonagh
7,5
CVSS
HIGH
Hardcoded Password
798
CWE
Product Name: C1000A Modem
Affected Version From: Firmware CAC003-31.30L.86
Affected Version To: Firmware CAC003-31.30L.86
Patch Exists: NO
Related CWE: NA
CPE: h:actiontec:c1000a
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2017
Actiontec C1000A backdoor account
The Actiontec C1000A Modem provided by CenturyLink has hardcoded passwords. This is similar to another recent submission by Matthew Shiemo, who inspired me to check the device I use. Proof of Concept: telnet 192.168.0.1 and login with admin/CenturyL1nk.
Mitigation:
Disable telnet access and use secure protocols such as SSH or SFTP.