Awesome-POC/network-device/宏电 H8922 Telnet后门漏洞 CVE-2021-28149.md
2022-02-20 16:14:31 +08:00

25 lines
454 B
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

# 宏电 H8922 Telnet后门漏洞 CVE-2021-28149
## 漏洞描述
宏电 H8922 Telnet存在硬编码的账号密码 且默认开放 5188端口连接可以以Root身份获取权限
## 漏洞影响
```
宏电 H8922
```
## ZoomEye
```
app:"Hongdian H8922 Industrial Router"
```
## 漏洞复现
使用Telnet连接目标5188端口账号密码为 **root/superzxmn**
![](https://typora-1308934770.cos.ap-beijing.myqcloud.com/202202140922781.png)