EMC PowerPath Virtual Appliance (aka vApp) before 2.0 has default passwords for the (1) emcupdate and (2) svcuser accounts, which makes it easier for remote attackers to obtain potentially sensitive information via a login session.
References
Link | Resource |
---|---|
http://seclists.org/bugtraq/2015/Apr/1 | Third Party Advisory VDB Entry |
http://packetstormsecurity.com/files/131250/EMC-PowerPath-Virtual-Appliance-Undocumented-User-Accounts.html | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2015-04-04 18:59
Updated : 2016-08-23 11:00
NVD link : CVE-2015-0529
Mitre link : CVE-2015-0529
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
emc
- powerpath_virtual_appliance