CVE-2023-30351

Severity CVSS v4.0:
Pending analysis
Type:
CWE-326 Inadequate Encryption Strength
Publication date:
10/05/2023
Last modified:
27/01/2025

Description

Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 was discovered to contain a hard-coded default password for root which is stored using weak encryption. This vulnerability allows attackers to connect to the TELNET service (or UART) by using the exposed credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:cp3_firmware:11.10.00.2211041355:*:*:*:*:*:*:*
cpe:2.3:h:tenda:cp3:-:*:*:*:*:*:*:*