PT-2022-19980 · Ma Lighting · Ma Lighting Grandma2 Light

Published

2022-08-21

·

Updated

2022-08-26

·

CVE-2022-30036

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MA Lighting grandMA2 Light (affected versions not specified)
Description The issue concerns a default password for the root account, which is set to root. The vendor notes that the product was designed for use on isolated networks. Additionally, it is mentioned that the successor product, grandMA3, is not affected by this issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

CVE-2022-30036

Affected Products

Ma Lighting Grandma2 Light