360 Systems Maxx, Image Server Maxx, and Image Server 2000 have a hardcoded password for the root account, which makes it easier for remote attackers to execute arbitrary code, or modify video content or scheduling, via an SSH session.
References
Link | Resource |
---|---|
http://ics-cert.us-cert.gov/pdf/ICSA-13-038-01A.pdf | US Government Resource |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-03-11 10:55
Updated : 2013-03-17 21:00
NVD link : CVE-2012-4702
Mitre link : CVE-2012-4702
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
360systems
- maxx
- image_server_maxx
- image_server_2000