PT-2008-3071 · Peel · Peel
Charles Fol
+1
·
Published
2008-03-25
·
Updated
2017-09-29
·
CVE-2008-1507
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
PEEL versions 3.x and earlier
Description
The issue allows remote attackers to gain administrative access due to default accounts with known passwords. Specifically, it has a default info@peel.fr account with password
admin, and a default contact@peel.fr account with password cinema.Recommendations
For versions 3.x and earlier, change the default passwords for the info@peel.fr and contact@peel.fr accounts to secure passwords. As a temporary workaround, consider disabling these default accounts until a more permanent solution is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Peel