Microhard Systems IPn4G
- 1.1.0 build 1098
A vulnerability exists in the Microhard Systems IPn4G 1.1.0 gateway due to hardcoded default credentials that cannot be changed through normal operations. This flaw allows attackers to gain unauthorized root access by logging in with predefined username and password combinations. The issue is rooted in the Linux distribution of the device, where these credentials are embedded but not exposed to the user.
Exploitation of this vulnerability allows for unauthorized root-level access to the device.
The vulnerability can be reproduced by logging into the device using the hardcoded default credentials. Once logged in, an authenticated attacker could potentially exploit another vulnerability to gain root access.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.