6.5
CVE-2015-6316
- EPSS 0.71%
- Published 06.11.2015 11:59:04
- Last modified 12.04.2025 10:46:40
- Source psirt@cisco.com
- Teams watchlist Login
- Open Login
The default configuration of sshd_config in Cisco Mobility Services Engine (MSE) through 8.0.120.7 allows logins by the oracle account, which makes it easier for remote attackers to obtain access by entering this account's hardcoded password in an SSH session, aka Bug ID CSCuv40501.
Data is provided by the National Vulnerability Database (NVD)
Cisco ≫ Mobility Services Engine Version5.1_base
Cisco ≫ Mobility Services Engine Version5.2_base
Cisco ≫ Mobility Services Engine Version6.0_base
Cisco ≫ Mobility Services Engine Version7.0_base
Cisco ≫ Mobility Services Engine Version7.4.100.0
Cisco ≫ Mobility Services Engine Version7.4.110.0
Cisco ≫ Mobility Services Engine Version7.4.121.0
Cisco ≫ Mobility Services Engine Version7.4_base
Cisco ≫ Mobility Services Engine Version7.5.102.101
Cisco ≫ Mobility Services Engine Version7.6.100.0
Cisco ≫ Mobility Services Engine Version7.6.120.0
Cisco ≫ Mobility Services Engine Version7.6.132.0
Cisco ≫ Mobility Services Engine Version8.0_base
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.71% | 0.713 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 8 | 6.4 |
AV:N/AC:L/Au:S/C:P/I:P/A:P
|