10
CVSSv2

CVE-2012-6428

Published: 23/12/2012 Updated: 08/01/2013
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Carlo Gavazzi EOS-Box with firmware prior to 1.0.0.1080_2.1.10 establishes multiple hardcoded accounts, which makes it easier for remote malicious users to obtain administrative access by reading a password in a PHP script, a similar issue to CVE-2012-5862.

Vulnerable Product Search on Vulmon Subscribe to Product

carlosgavazzi eos-box_photovoltaic_monitoring_system_firmware

carlosgavazzi eos-box_photovoltaic_monitoring_system -