References https://www.twcert.org.tw/tw/cp-132-7085-13321-1.html https://www.twcert.org.tw/en/cp-139-7090-e6023-2.html https://www.cve.org/CVERecord?id=CVE-2023-30603 https://nvd.nist.gov/vuln/detail/CVE-2023-30603 https://github.com/advisories/GHSA-vppr-7254-jpr7 https://cve.imfht.com/detail/CVE-2023-30603 https://hitrontech.com/products/cable-modem-gateways/coda-5310-cable-gateway/
Related VulnerabilitiesPoCCVE-2023-54391: Proxmox VE - Default Credentials with TFA BypassPoCjohnson-controls-default-login: Johnson Controls Frick Quantum HD Compressors - Default LoginPoCmaven-settings-xml-exposure: Apache Maven settings.xml Credentials - ExposurePoCnuget-config-exposure: NuGet.config Package Source Credentials - ExposurePoCpypirc-credentials-exposure: Python .pypirc Credentials - ExposurePoCCVE-2026-18963: Keycloak < 26.7.2 - Unauthenticated Account Takeover via Reset-Credentials BypassPoClitellm-default-login: LiteLLM - Default LoginPoCnet-vision-default-login: Net Vision UPS Monitor - Default LoginPoC3xui-default-login: 3X-UI - Default LoginMicrosoft SharePoint Server /_trust/default.aspx 代码执行漏洞(CVE-2026-50522)PoCCVE-2026-44825: Apache Solr 9.4.0-9.10.1 / 10.0.0 - Hardcoded Default CredentialsPoCCVE-2026-52824: Kimai <= 2.57.0 - Default APP_SECRET Authentication BypassPoCsentinel-default-login: Alibaba Sentinel - Default Login