Zettler TCP/IP Gateway Default Credentials Vulnerability

Vulnerability

A vulnerability allowing the use of default credentials has been identified in the Zettler 130.8005 TCP/IP Gateway, specifically in devices running firmware version 12h. The gateway's FTP server is accessible with default admin credentials that are easy to guess. This vulnerability could allow a remote attacker to access the FTP server and modify resources available through the service, such as configuration files containing password hashes or network settings.

Impact

Exploitation of this vulnerability could lead to unauthorized access to the FTP server, allowing attackers to change configuration files, access password hashes, or modify network settings.

Remediation

It is recommended to move the device to a management VLAN where only authorized clients can interact with it.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.