Описание
The Priva TopControl Suite contains predictable credentials for the SSH service, based on the Serial number. Which makes it possible for an attacker to calculate the login credentials for the Priva TopControll suite.
Ссылки
- Broken Link
- Broken Link
- Third Party AdvisoryUS Government Resource
- Broken Link
- Broken Link
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 8.7.8.0 (включая)
cpe:2.3:a:priva:top_control_suite:*:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00126
Низкий
7.5 High
CVSS3
Дефекты
CWE-1391
CWE-916
Связанные уязвимости
CVSS3: 7.5
github
около 2 лет назад
The Priva TopControl Suite contains predictable credentials for the SSH service, based on the Serial number. Which makes it possible for an attacker to calculate the login credentials for the Priva TopControll suite.
EPSS
Процентиль: 32%
0.00126
Низкий
7.5 High
CVSS3
Дефекты
CWE-1391
CWE-916