OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials.
References
Link | Resource |
---|---|
http://www.opennms.org/wiki/CVE-2015-0975 | Vendor Advisory |
http://www.rapid7.com/db/modules/auxiliary/gather/opennms_xxe | Exploit |
Configurations
Information
Published : 2015-10-16 13:59
Updated : 2015-10-19 12:34
NVD link : CVE-2015-7856
Mitre link : CVE-2015-7856
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
opennms
- opennms