Executive brief
The Taiko AG1000-01A SMS Alert Gateway, a device used for sending automated SMS notifications, contains a critical security flaw in its web management interface. The system's login process is handled insecurely, allowing anyone with network access to view the administrative password directly within the website's source code. An attacker could use these credentials to take full control of the device, potentially disrupting alert services or intercepting communications.
Technical details
A hard-coded credentials vulnerability (CWE-798) exists in the Taiko AG1000-01A SMS Alert Gateway Rev 7.3 and Rev 8. The vulnerability is located in the 'login.zhtml' component, where the authentication logic is implemented entirely in client-side JavaScript. Because the 'validate()' function contains static plaintext credentials, an unauthenticated attacker with network access to the web configuration interface can view the page source to recover administrative credentials. This allows for complete unauthorized administrative access to the device's configuration and functions.
Affected products
- Taiko AG1000-01A SMS Alert Gateway Rev 7.3, Rev 8, UM-AG1000_R7.2
Timeline
- 2026-05-20: advisory: Initial disclosure by VulnCheck and NVD publication