Files
CVEs-PoC/2022/CVE-2022-22144.md
T
2024-06-18 02:51:15 +02:00

885 B

CVE-2022-22144

Description

A hard-coded password vulnerability exists in the libcommonprod.so prod_change_root_passwd functionality of TCL LinkHub Mesh Wi-Fi MS1G_00_01.00_14. During system startup this functionality is always called, leading to a known root password. An attacker does not have to do anything to trigger this vulnerability.

POC

Reference

Github

No PoCs found on GitHub currently.