Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5xp3-2ff8-9grr

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

EPSS

Процентиль: 49%
0.00255
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 месяца назад

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

CVSS3: 9.8
fstec
около 1 месяца назад

Уязвимость средства конфигурирования и управления точками доступа HPE Networking Instant On, связанная с использованием жестко закодированных учетных данных, позволяющая нарушителю обойти ограничения безопасности и повысить свои привилегии

EPSS

Процентиль: 49%
0.00255
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-798