6.5

CVE-2015-6316

The default configuration of sshd_config in Cisco Mobility Services Engine (MSE) through 8.0.120.7 allows logins by the oracle account, which makes it easier for remote attackers to obtain access by entering this account's hardcoded password in an SSH session, aka Bug ID CSCuv40501.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoMobility Services Engine Version5.1_base
CiscoMobility Services Engine Version5.2_base
CiscoMobility Services Engine Version6.0_base
CiscoMobility Services Engine Version7.0_base
CiscoMobility Services Engine Version7.4.100.0
CiscoMobility Services Engine Version7.4.110.0
CiscoMobility Services Engine Version7.4.121.0
CiscoMobility Services Engine Version7.4_base
CiscoMobility Services Engine Version7.5.102.101
CiscoMobility Services Engine Version7.6.100.0
CiscoMobility Services Engine Version7.6.120.0
CiscoMobility Services Engine Version7.6.132.0
CiscoMobility Services Engine Version8.0_base
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.71% 0.713
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P