Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-92j2-68jj-9753

Опубликовано: 22 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 9.8

Описание

Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do not change this account password are vulnerable to a remote attacker logging in and gaining the privileges of this account. Fixed in 10.2.35, 11.0.21, and 11.1.9.

Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do not change this account password are vulnerable to a remote attacker logging in and gaining the privileges of this account. Fixed in 10.2.35, 11.0.21, and 11.1.9.

EPSS

Процентиль: 44%
0.00212
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-1392

Связанные уязвимости

CVSS3: 9.8
nvd
5 месяцев назад

Airship AI Acropolis includes a default administrative account that uses the same credentials on every installation. Instances of Airship AI that do not change this account password are vulnerable to a remote attacker logging in and gaining the privileges of this account. Fixed in 10.2.35, 11.0.21, and 11.1.9.

CVSS3: 9.8
fstec
5 месяцев назад

Уязвимость платформы для масштабируемого управления видео и данными Acropolis, связанная с использованием учетных данных по умолчанию, позволяющая нарушителю войти в учетную запись с правами администратора

EPSS

Процентиль: 44%
0.00212
Низкий

9.3 Critical

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-1392