go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

Chunghwa Telecom NOKIA G-040W-Q - Weak Password Requirements

TVN ID TVN-202311009
CVE ID CVE-2023-41353
CVSS 8.8 (High)
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products Chunghwa Telecom NOKIA G-040W-Q: G040WQR201207
Description Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of weak password requirements. A remote attacker with regular user privilege can easily infer the administrator password from system information after logging system, resulting in admin access and performing arbitrary system operations or disrupt service.
Solution Update version to 3.0.0.4.386_51948.
Credit Ta-Lun Yen(TXOne Networks)
Public Date 2023-11-03
Top