ZeroHour

CVE-2020-9023

PoC
CVSS 3.1
9.8 critical
EPSS
1%p73
Published
()
Modified
Description

Iteris Vantage Velocity Field Unit 2.3.1 and 2.4.2 devices have two users that are not documented and are configured with weak passwords (User bluetooth, password bluetooth; User eclipse, password eclipse). Also, bluetooth is the root password.

Vendors
iteris
Products
vantage velocity firmware
Weakness
CWE-521
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.