Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mmhc-m89q-9v2j

Опубликовано: 04 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered on Thermo Fisher Ion Torrent OneTouch 2 INS1005527 devices. They run an SSH server accessible over the default port 22. The root account has a weak default password of ionadmin, and a password change policy for the root account is not enforced. Thus, an attacker with network connectivity can achieve root code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

An issue was discovered on Thermo Fisher Ion Torrent OneTouch 2 INS1005527 devices. They run an SSH server accessible over the default port 22. The root account has a weak default password of ionadmin, and a password change policy for the root account is not enforced. Thus, an attacker with network connectivity can achieve root code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

EPSS

Процентиль: 26%
0.00089
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-521

Связанные уязвимости

CVSS3: 9.8
nvd
2 месяца назад

An issue was discovered on Thermo Fisher Ion Torrent OneTouch 2 INS1005527 devices. They run an SSH server accessible over the default port 22. The root account has a weak default password of ionadmin, and a password change policy for the root account is not enforced. Thus, an attacker with network connectivity can achieve root code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

EPSS

Процентиль: 26%
0.00089
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-521