EMC PowerPath Virtual Appliance (aka vApp) before 2.0 has default passwords for the (1) emcupdate and (2) svcuser accounts, which makes it easier for remote attackers to obtain potentially sensitive information via a login session.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/131250/EMC-PowerPath-Virtual-Appliance-Undocumented-User-Accounts.html | Third Party Advisory VDB Entry |
http://seclists.org/bugtraq/2015/Apr/1 | Third Party Advisory VDB Entry |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: dell
Published: 2015-04-05T01:00:00
Updated: 2015-04-08T17:57:00
Reserved: 2014-12-17T00:00:00
Link: CVE-2015-0529
JSON object: View
NVD Information
Status : Analyzed
Published: 2015-04-05T01:59:00.070
Modified: 2016-08-23T18:00:22.947
Link: CVE-2015-0529
JSON object: View
Redhat Information
No data.
CWE