Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-992j-h966-88v9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 have hardcoded credentials for a support account, which allows remote attackers to obtain administrative access, and consequently execute arbitrary code, by leveraging knowledge of the password.

GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 have hardcoded credentials for a support account, which allows remote attackers to obtain administrative access, and consequently execute arbitrary code, by leveraging knowledge of the password.

EPSS

Процентиль: 81%
0.01506
Низкий

Связанные уязвимости

nvd
больше 10 лет назад

GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 have hardcoded credentials for a support account, which allows remote attackers to obtain administrative access, and consequently execute arbitrary code, by leveraging knowledge of the password.

EPSS

Процентиль: 81%
0.01506
Низкий