10
CVSSv2

CVE-2014-6617

Published: 09/03/2018 Updated: 09/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Softing FG-100 PB PROFIBUS firmware version FG-x00-PB_V2.02.0.00 contains a hardcoded password for the root account, which allows remote malicious users to obtain administrative access via a TELNET session.

Vulnerable Product Search on Vulmon Subscribe to Product

industrial.softing fg-100_pb_profibus_firmware fg-x00-pb_v2.02.0.00

Exploits

Softing FG-100 PB comes with a hardcoded root account with a static password that cannot be changed by the administrator ...