CVE-2017-18373
Last modified
CVE-2017-18373 is a vulnerability of currently unknown severity. The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has three user accounts with default passwords, including two hardcoded service accounts: one with the username true and password true, and another with the username user3 and and a long password consisting of a repetition of the string 0123456789. These accounts can be used to login to the web interface, exploit authenticated command injections, and change router settings for malicious purposes.. EPSS estimates a 5.38% chance of exploitation in the next 30 days.
Description
The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router distributed by TrueOnline has three user accounts with default passwords, including two hardcoded service accounts: one with the username true and password true, and another with the username user3 and and a long password consisting of a repetition of the string 0123456789. These accounts can be used to login to the web interface, exploit authenticated command injections, and change router settings for malicious purposes.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Billion | 5200w-T Firmware | 7.3.8.0 |
References
- https://raw.githubusercontent.com/pedrib/PoC/master/advisories/zyxel_trueonline.txtExploit, Third Party Advisory
- https://seclists.org/fulldisclosure/2017/Jan/40Exploit, Mailing List, Third Party Advisory
- https://ssd-disclosure.com/index.php/archives/2910Exploit, Technical Description, Third Party Advisory
- https://raw.githubusercontent.com/pedrib/PoC/master/advisories/zyxel_trueonline.txtExploit, Third Party Advisory
- https://seclists.org/fulldisclosure/2017/Jan/40Exploit, Mailing List, Third Party Advisory
- https://ssd-disclosure.com/index.php/archives/2910Exploit, Technical Description, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2017-18373?
How severe is CVE-2017-18373?
How do I fix CVE-2017-18373?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2017
- CVE-2017-18368The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM…9.8
- CVE-2017-18369The Billion 5200W-T 1.02b.rc5.dt49 router distributed by Tru…
- CVE-2017-1837Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2017-18370The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distribu…
- CVE-2017-18371The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distribu…
- CVE-2017-18372The Billion 5200W-T TCLinux Fw $7.3.8.0 v008 130603 router d…
- CVE-2017-18374The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM…
- CVE-2017-18375Ampache 3.8.3 allows PHP Object Instantiation via democratic…
- CVE-2017-18376An improper authorization check in the User API in TheHive b…
- CVE-2017-18377An issue was discovered on Wireless IP Camera (P2P) WIFICAM …9.8
- CVE-2017-18378In NETGEAR ReadyNAS Surveillance before 1.4.3-17 x86 and bef…8.4
- CVE-2017-18379In the Linux kernel before 4.14, an out of boundary access h…9.8
Are you affected by CVE-2017-18373?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
