ZeroHour

CVE-2016-1560

PoC ×2
CVSS 3.0
9.8 critical
EPSS
72%p99
Published
()
Modified
Description

ExaGrid appliances with firmware before 4.8 P26 have a default password of (1) inflection for the root shell account and (2) support for the support account in the web interface, which allows remote attackers to obtain administrative access via an SSH or HTTP session.

Vendors
exagrid
Products
ex3000 firmware, ex5000 firmware, ex7000 firmware, ex10000e firmware, ex13000e firmware, ex21000e firmware, ex32000e firmware, ex40000e firmware
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.