CVE-2012-4702

360 Systems Maxx, Image Server Maxx, and Image Server 2000 have a hardcoded password for the root account, which makes it easier for remote attackers to execute arbitrary code, or modify video content or scheduling, via an SSH session.
References
Link Resource
http://ics-cert.us-cert.gov/pdf/ICSA-13-038-01A.pdf US Government Resource
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:360systems:image_server_2000:-:*:*:*:*:*:*:*
cpe:2.3:o:360systems:image_server_maxx:-:*:*:*:*:*:*:*
cpe:2.3:o:360systems:maxx:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-03-11 17:55

Updated : 2024-02-28 12:00


NVD link : CVE-2012-4702

Mitre link : CVE-2012-4702

CVE.ORG link : CVE-2012-4702


JSON object : View

Products Affected

360systems

  • maxx
  • image_server_2000
  • image_server_maxx
CWE
CWE-255

Credentials Management Errors