QID 591152
Date Published: 2022-11-04
QID 591152: Moxa AWK-3131A Hard-coded Administrator Credentials Vulnerability (TALOS-2016-0231)
AFFECTED PRODUCTS
Moxa AWK-3131A Series Industrial IEEE 802.11a/b/g/n wireless AP/bridge/client 1.1
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
An exploitable Use of Hard-coded Credentials vulnerability exists in the Moxa AWK-3131A Wireless Access Point running firmware 1.1. The device operating system contains an undocumented, privileged (root) account with hard-coded credentials, giving attackers full control of affected devices.
Solution
Customers are advised to refer to CERT MITIGATIONS section TALOS-2016-0231 for affected packages and patching details.
Vendor References
- TALOS-2016-0231 -
talosintelligence.com/vulnerability_reports/TALOS-2016-0231
CVEs related to QID 591152
Software Advisories
| Advisory ID | Software | Component | Link |
|---|