PT-2000-1716 · Rapidstream · Rapidstream Vpn Appliance
Publicado
2000-10-20
·
Atualizado
2008-09-05
·
CVE-2000-0784
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Rapidstream VPN appliance version 2.1 Beta
Description
The sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded
rsadmin account with a null password. This allows remote attackers to execute arbitrary commands via ssh.Recommendations
For Rapidstream VPN appliance version 2.1 Beta, consider disabling the
rsadmin account or setting a strong password for it until a patch is available. Restrict access to the sshd program to minimize the risk of exploitation.Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Rapidstream Vpn Appliance