Adtran 411 ONT Weak Default Password Vulnerability
Vulnerability
A vulnerability exists in the Adtran 411 ONT running firmware version L80.00.0011.M2, where weak default passwords are set. This issue was identified during a security audit, which also revealed other vulnerabilities such as command injection via the web interface and Telnet ping, and the ability for unprivileged users to access the configuration file containing the admin password.
Impact
Exploitation of this vulnerability allows for unauthorized access, potentially leading to further exploitation of the device, such as accessing the root shell via the serial console, as indicated in the security audit findings.
Remediation
Users are advised to update to version 24.3, where this vulnerability has been addressed.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
