Lucene search

K
prionPRIOn knowledge basePRION:CVE-2010-2966
HistoryAug 05, 2010 - 1:22 p.m.

Hardcoded credentials

2010-08-0513:22:00
PRIOn knowledge base
www.prio-n.com
3

7.1 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

75.2%

The INCLUDE_SECURITY functionality in Wind River VxWorks 6.x, 5.x, and earlier uses the LOGIN_USER_NAME and LOGIN_USER_PASSWORD (aka LOGIN_PASSWORD) parameters to create hardcoded credentials, which makes it easier for remote attackers to obtain access via a (1) telnet, (2) rlogin, or (3) FTP session.

CPENameOperatorVersion
vxworkseq6
vxworkseq5
vxworkseq6.4
vxworksle6.8
vxworkseq5.5

7.1 High

AI Score

Confidence

Low

0.004 Low

EPSS

Percentile

75.2%

Related for PRION:CVE-2010-2966