ZeroHour

CVE-2017-4976

CVSS 3.0
9.8 critical
EPSS
2%p77
Published
()
Modified
Description

EMC ESRS Policy Manager prior to 6.8 contains an undocumented account (OpenDS admin) with a default password. A remote attacker with the knowledge of the default password may login to the system and gain administrator privileges to the local LDAP directory server.

Vendors
emc
Products
esrs policy manager
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.