PT-2023-13737 · Unknown · Fighting Cock Information System
Hopscotch
·
Published
2023-04-26
·
Updated
2023-05-04
·
CVE-2022-39989
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Fighting Cock Information System version 1.0
Description
An issue was discovered in the system, which uses default credentials but does not force nor prompt administrators to change these credentials.
Recommendations
For Fighting Cock Information System version 1.0, consider changing the default credentials immediately and ensure that administrators are prompted to update their credentials to prevent unauthorized access. As a temporary workaround, restrict access to the system until the default credentials are changed.
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fighting Cock Information System