H3C Magic R230 V100R002 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.
References
| Link | Resource |
|---|---|
| https://github.com/s4ndw1ch136/IOT-vuln-reports/blob/main/H3C/Magic%20R230/hardcode/README.md | Exploit Third Party Advisory |
| https://github.com/s4ndw1ch136/IOT-vuln-reports/blob/main/H3C/Magic%20R230/hardcode/README.md | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2024-06-24 21:15
Updated : 2025-05-27 16:21
NVD link : CVE-2024-38902
Mitre link : CVE-2024-38902
CVE.ORG link : CVE-2024-38902
JSON object : View
Products Affected
h3c
- magic_r230_firmware
- magic_r230
CWE
CWE-259
Use of Hard-coded Password
