8.4

CVE-2015-6850

EMC VPLEX GeoSynchrony 5.4 SP1 before P3 and 5.5 before Patch 1 has a default password for the root account, which allows local users to gain privileges by leveraging a login session.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Emc ≫ Vplex Geosynchrony Version 5.4 Update sp1
Emc ≫ Vplex Geosynchrony Version 5.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.54% 0.41
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.4 2.5 5.9
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://packetstormsecurity.com/files/135041/EMC-VPLEX-Undocumented-Account.html
http://seclists.org/bugtraq/2015/Dec/129
http://www.securityfocus.com/bid/79664
http://www.securitytracker.com/id/1034526