Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5xp3-2ff8-9grr

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

EPSS

Процентиль: 56%
0.00331
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
nvd
7 месяцев назад

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

CVSS3: 9.8
fstec
7 месяцев назад

Уязвимость средства конфигурирования и управления точками доступа HPE Networking Instant On, связанная с использованием жестко закодированных учетных данных, позволяющая нарушителю обойти ограничения безопасности и повысить свои привилегии

EPSS

Процентиль: 56%
0.00331
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-798