CVE-2021-37555
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
TX9 Automatic Food Dispenser v3.2.57 devices allow access to a shell as root/superuser, a related issue to CVE-2019-16734. To connect, the telnet service is used on port 23 with the default password of 059AnkJ for the root account. The user can then download the filesystem through preinstalled BusyBox utilities (e.g., tar and nc).
Affected (1)
Products: Trixie: Tx9 Automatic Food Dispenser Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.2.57 |
| Running on/with | Platform Versions |
|---|---|
Trixie Tx9 Automatic Food Dispenser | All versions |
References (2)
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.