Описание
OpsRamp Gateway before 7.0.0 has a backdoor account vadmin with the password 9vt@f3Vt that allows root SSH access to the server. This issue has been resolved in OpsRamp Gateway firmware version 7.0.0 where an administrator and a system user accounts are the only available user accounts for the gateway appliance.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:opsramp:gateway:3.0.0:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00529
Низкий
9.8 Critical
CVSS3
10 Critical
CVSS2
Дефекты
CWE-798
Связанные уязвимости
github
больше 3 лет назад
OpsRamp Gateway 3.0.0 has a backdoor account vadmin with the password 9vt@f3Vt that allows root SSH access to the server.
EPSS
Процентиль: 67%
0.00529
Низкий
9.8 Critical
CVSS3
10 Critical
CVSS2
Дефекты
CWE-798