PT-2000-1716 · Rapidstream · Rapidstream Vpn Appliance

Published

2000-10-20

·

Updated

2008-09-05

·

CVE-2000-0784

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Rapidstream VPN appliance version 2.1 Beta
Description The sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded rsadmin account with a null password. This allows remote attackers to execute arbitrary commands via ssh.
Recommendations For Rapidstream VPN appliance version 2.1 Beta, consider disabling the rsadmin account or setting a strong password for it until a patch is available. Restrict access to the sshd program to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0784

Affected Products

Rapidstream Vpn Appliance