ZeroHour

CVE-2018-11062

CVSS 3.0
8.8 high
EPSS
2%p77
Published
()
Modified
Description

Integrated Data Protection Appliance versions 2.0, 2.1, and 2.2 contain undocumented accounts named 'support' and 'admin' that are protected with default passwords. These accounts have limited privileges and can access certain system files only. A malicious user with the knowledge of the default passwords may potentially log in to the system and gain read and write access to certain system files.

Vendors
dell
Products
emc integrated data protection appliance
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.