Overview

Affected version

M01AE_V240305

Vulnerability description

WN701AE was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.

image.png

Additional Information

###Product_version
WN701AE
M01AE_V240305
###Affected_component
/etc/shadow

###Attack_vector
The root password obtained from /etc/shadow can be used for unauthorized root login.

###Discription
WN701AE was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root.

###Refernce
<https://colorful-meadow-5b9.notion.site/WN701AE_HardCode_vuln-14ac216a1c308015b571e68810d83e16?pvs=4>
<https://docs.wavlink.xyz/Firmware_ch/fm-701e/>

after decrypt the passwd we got Fireitup