Battelle V2I Hub 2.5.1 contains hard-coded credentials for the administrative account. An attacker could exploit this vulnerability to log in as an admin on any installation and gain unauthorized access to the system.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/147302 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-12-28 08:29
Updated : 2019-01-11 07:18
NVD link : CVE-2018-1000625
Mitre link : CVE-2018-1000625
JSON object : View
CWE
CWE-798
Use of Hard-coded Credentials
Products Affected
battelle
- v2i_hub