10
CVE-2013-3542
- EPSS 3.24%
- Veröffentlicht 11.12.2019 19:15:11
- Zuletzt bearbeitet 21.11.2024 01:53:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Grandstream GXV3501, GXV3504, GXV3601, GXV3601HD/LL, GXV3611HD/LL, GXV3615W/P, GXV3651FHD, GXV3662HD, GXV3615WP_HD, GXV3500, and possibly other camera models with firmware 1.0.4.11, have a hardcoded account "!#/" with the same password, which makes it easier for remote attackers to obtain access via a TELNET session.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Grandstream ≫ Gxv3501 Firmware Version1.0.4.11
Grandstream ≫ Gxv3504 Firmware Version1.0.4.11
Grandstream ≫ Gxv3601 Firmware Version1.0.4.11
Grandstream ≫ Gxv3601hd Firmware Version1.0.4.11
Grandstream ≫ Gxv3601ll Firmware Version1.0.4.11
Grandstream ≫ Gxv3611hd Firmware Version1.0.4.11
Grandstream ≫ Gxv3611ll Firmware Version1.0.4.11
Grandstream ≫ Gxv3615w Firmware Version1.0.4.11
Grandstream ≫ Gxv3615p Firmware Version1.0.4.11
Grandstream ≫ Gxv3651fhd Firmware Version1.0.4.11
Grandstream ≫ Gxv3662hd Firmware Version1.0.4.11
Grandstream ≫ Gxv3615wp Hd Firmware Version1.0.4.11
Grandstream ≫ Gxv3500 Firmware Version1.0.4.11
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.24% | 0.864 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 3.9 | 6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-798 Use of Hard-coded Credentials
The product contains hard-coded credentials, such as a password or cryptographic key.