Adtran 411 ONT Weak Default Password Vulnerability

Vulnerability

A vulnerability exists in the Adtran 411 ONT running firmware version L80.00.0011.M2, where weak default passwords are set. This issue was identified during a security audit, which also revealed other vulnerabilities such as command injection via the web interface and Telnet ping, and the ability for unprivileged users to access the configuration file containing the admin password.

Impact

Exploitation of this vulnerability allows for unauthorized access, potentially leading to further exploitation of the device, such as accessing the root shell via the serial console, as indicated in the security audit findings.

Remediation

Users are advised to update to version 24.3, where this vulnerability has been addressed.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
4.3
remediation
0.0
relevance
0.0
threat
4.8
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.