An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and possibly below. During the installation, it sets up administrative access by default with the account admin and password 0000. After the installation, users/admins are not prompted to change this password.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/160623/Programi-Bilanc-Build-007-Release-014-31.01.2020-Weak-Default-Password.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2020/Dec/34 | Mailing List Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-23T15:58:55
Updated: 2020-12-23T15:59:29
Reserved: 2020-04-12T00:00:00
Link: CVE-2020-11720
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-12-23T16:15:12.450
Modified: 2020-12-23T20:08:29.327
Link: CVE-2020-11720
JSON object: View
Redhat Information
No data.
CWE