Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g5g3-whp3-mmvg

Опубликовано: 13 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.6

Описание

A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The device exposes an FTP server with default and easy-to-guess admin credentials. A remote attacker capable of interacting with the FTP server could gain access and perform changes over resources exposed by the service such as configuration files where password hashes are saved or where network settings are stored.

A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The device exposes an FTP server with default and easy-to-guess admin credentials. A remote attacker capable of interacting with the FTP server could gain access and perform changes over resources exposed by the service such as configuration files where password hashes are saved or where network settings are stored.

EPSS

Процентиль: 43%
0.00205
Низкий

7.6 High

CVSS3

Дефекты

CWE-1392

Связанные уязвимости

CVSS3: 7.6
nvd
12 месяцев назад

A CWE-1392 “Use of Default Credentials” was discovered affecting the 130.8005 TCP/IP Gateway running firmware version 12h. The device exposes an FTP server with default and easy-to-guess admin credentials. A remote attacker capable of interacting with the FTP server could gain access and perform changes over resources exposed by the service such as configuration files where password hashes are saved or where network settings are stored.

EPSS

Процентиль: 43%
0.00205
Низкий

7.6 High

CVSS3

Дефекты

CWE-1392