Описание
Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.
Ссылки
- PatchVendor Advisory
- ExploitPatchVendor Advisory
- PatchVendor Advisory
- ExploitPatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 4.6.3 (включая)
Одно из
cpe:2.3:a:akopia:akopia_interchange:*:*:*:*:*:*:*:*
cpe:2.3:a:akopia:akopia_interchange:4.5.3:*:*:*:*:*:*:*
EPSS
Процентиль: 81%
0.01552
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.
EPSS
Процентиль: 81%
0.01552
Низкий
10 Critical
CVSS2
Дефекты
NVD-CWE-Other