Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-7248

Опубликовано: 26 янв. 2014
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other versions before 2.4.0 has a hardcoded password for the roleDiag account, which allows remote attackers to gain root privileges, as demonstrated using a cmdWebCheckRole action in a TSA_REQUEST.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:franklinfueling:ts-550_evo_firmware:2.0.0.6833:*:*:*:*:*:*:*
cpe:2.3:o:franklinfueling:ts-550_evo_firmware:2.3.1.7492:*:*:*:*:*:*:*
cpe:2.3:h:franklinfueling:ts-550_evo:-:*:*:*:*:*:*:*

EPSS

Процентиль: 94%
0.15399
Средний

10 Critical

CVSS2

Дефекты

CWE-255

Связанные уязвимости

github
больше 3 лет назад

Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other versions before 2.4.0 has a hardcoded password for the roleDiag account, which allows remote attackers to gain root privileges, as demonstrated using a cmdWebCheckRole action in a TSA_REQUEST.

EPSS

Процентиль: 94%
0.15399
Средний

10 Critical

CVSS2

Дефекты

CWE-255