Description
ECOA BAS controller uses weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control of the system.
Related CPE's
Vulnerable
Vulnerable
Vulnerable
References
https://www.twcert.org.tw/tw/cp-132-5132-65705-1.html
Third Party Advisory
https://www.twcert.org.tw/tw/cp-132-5132-65705-1.html
Third Party Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8 · Critical
Information
Source identifier
Vulnerability status
Modified
Published
2021-09-30T09:15:07.707Z
4 years agoLast modified
2024-11-21T05:25:59.303Z
1 year ago