Lucene search

K
cvelistMitreCVELIST:CVE-2018-16158
HistoryAug 30, 2018 - 5:00 a.m.

CVE-2018-16158

2018-08-3005:00:00
mitre
www.cve.org
7
eaton power xpert meter
ssh private key
vulnerability
remote attackers

AI Score

9.6

Confidence

High

EPSS

0.033

Percentile

91.5%

Eaton Power Xpert Meter 4000, 6000, and 8000 devices before 13.4.0.10 have a single SSH private key across different customers’ installations and do not properly restrict access to this key, which makes it easier for remote attackers to perform SSH logins (to uid 0) via the PubkeyAuthentication option.

AI Score

9.6

Confidence

High

EPSS

0.033

Percentile

91.5%

Related for CVELIST:CVE-2018-16158