Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mc96-c64w-4h74

Опубликовано: 30 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.8

Описание

Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any user's password.

Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any user's password.

EPSS

Процентиль: 37%
0.00162
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 6.8
nvd
больше 1 года назад

Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any user's password.

EPSS

Процентиль: 37%
0.00162
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-798