Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-23pc-m5mw-j4cc

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

LeftHand OS (aka SAN iQ) 10.5 and earlier on HP StoreVirtual Storage devices does not provide a mechanism for disabling the HP Support challenge-response root-login feature, which makes it easier for remote attackers to obtain administrative access by leveraging knowledge of an unused one-time password.

LeftHand OS (aka SAN iQ) 10.5 and earlier on HP StoreVirtual Storage devices does not provide a mechanism for disabling the HP Support challenge-response root-login feature, which makes it easier for remote attackers to obtain administrative access by leveraging knowledge of an unused one-time password.

EPSS

Процентиль: 84%
0.02217
Низкий

Связанные уязвимости

nvd
около 12 лет назад

LeftHand OS (aka SAN iQ) 10.5 and earlier on HP StoreVirtual Storage devices does not provide a mechanism for disabling the HP Support challenge-response root-login feature, which makes it easier for remote attackers to obtain administrative access by leveraging knowledge of an unused one-time password.

EPSS

Процентиль: 84%
0.02217
Низкий