Earlier quoted context omitted.
While this is being touted as a smoking gun, calling it a "backdoor" may be reaching: https://www.theregister.co.uk/2019/04/30/huawei_enterprise_r...
I think this article is disingenuous. It's telnet on a nonstandard port with hardcoded credentials, that was added back in after being removed when it was spotted in previous security testing. Edit: this according to one of the sources in the Bloomberg article, who claims to have read internal Vodaphone documents https://twitter.com/raistolo/status/1123283199348621312
>It added the Telnet service was found during an audit, which means it can't have been that secret or hidden: "The issues were identified by independent security testing, initiated by Vodafone as part of our routine security measures, and fixed at the time by Huawei.