9
CVSSv2

CVE-2015-3974

Published: 28/09/2015 Updated: 29/09/2015
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

EasyIO EasyIO-30P-SF controllers with firmware prior to 0.5.21 and 2.x prior to 2.0.5.21, as used in Accutrol, Bar-Tech Automation, Infocon/EasyIO, Honeywell Automation India, Johnson Controls, SyxthSENSE, Transformative Wave Technologies, Tridium Asia Pacific, and Tridium Europe products, have a hardcoded password, which makes it easier for remote malicious users to obtain access via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

easyio easyio-30p-sf_firmware

easyio easyio-30p-sf