Lucene search

K
cve[email protected]CVE-2012-4702
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-4702

2022-10-0316:15:33
CWE-255
web.nvd.nist.gov
27
360 systems
maxx
image server
ssh
hardcoded password
security vulnerability
cve-2012-4702

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.3%

360 Systems Maxx, Image Server Maxx, and Image Server 2000 have a hardcoded password for the root account, which makes it easier for remote attackers to execute arbitrary code, or modify video content or scheduling, via an SSH session.

Affected configurations

NVD
Node
360systemsimage_server_2000Match-
OR
360systemsimage_server_maxxMatch-
OR
360systemsmaxxMatch-

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

72.3%

Related for CVE-2012-4702