6.5
CVE-2015-6316
- EPSS 0.71%
- Veröffentlicht 06.11.2015 11:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
The default configuration of sshd_config in Cisco Mobility Services Engine (MSE) through 8.0.120.7 allows logins by the oracle account, which makes it easier for remote attackers to obtain access by entering this account's hardcoded password in an SSH session, aka Bug ID CSCuv40501.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Mobility Services Engine Version5.1_base
Cisco ≫ Mobility Services Engine Version5.2_base
Cisco ≫ Mobility Services Engine Version6.0_base
Cisco ≫ Mobility Services Engine Version7.0_base
Cisco ≫ Mobility Services Engine Version7.4.100.0
Cisco ≫ Mobility Services Engine Version7.4.110.0
Cisco ≫ Mobility Services Engine Version7.4.121.0
Cisco ≫ Mobility Services Engine Version7.4_base
Cisco ≫ Mobility Services Engine Version7.5.102.101
Cisco ≫ Mobility Services Engine Version7.6.100.0
Cisco ≫ Mobility Services Engine Version7.6.120.0
Cisco ≫ Mobility Services Engine Version7.6.132.0
Cisco ≫ Mobility Services Engine Version8.0_base
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.71% | 0.713 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|