10

CVE-2015-7246

Exploit

D-Link DVG-N5402SP with firmware W1000CN-00, W1000CN-03, or W2000EN-00 has a default password of root for the root account and tw for the tw account, which makes it easier for remote attackers to obtain administrative access.

Data is provided by the National Vulnerability Database (NVD)
D-linkDvg-n5402sp Firmware Versionw1000cn-00
   DlinkDvg-n5402sp Version-
D-linkDvg-n5402sp Firmware Versionw1000cn-03
   DlinkDvg-n5402sp Version-
D-linkDvg-n5402sp Firmware Versionw2000en-00
   DlinkDvg-n5402sp Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 33.1% 0.965
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-798 Use of Hard-coded Credentials

The product contains hard-coded credentials, such as a password or cryptographic key.