CVE-2024-52788

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
19/11/2024
Last modified:
07/04/2025

Description

Tenda W9 v1.0.0.7(4456) was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:tenda:w9_firmware:1.0.0.7\(4456\):*:*:*:*:*:*:*
cpe:2.3:h:tenda:w9:-:*:*:*:*:*:*:*