Sårbarhed Detalje Syn
Legend :
critical
high
medium
low
other
| id | 43158 |
| Risiko | other |
| Familie | CGI abuses |
| Kategori | attack |
| Navn | phpShop Default Credentials |
| Sammenfatning | Tries to login using default credentials |
| Beskrivelse | Synopsis :
The remote web application uses default credentials.
Description :
It is possible to log into the remote phpShop installation by
providing default credentials. Several accounts are included in the
default phpShop installation. A remote attacker could exploit this to
gain unauthorized, potentially administrative control of the phpShop
installation.
Solution :
Delete unused accounts, and secure others with strong passwords.
Risk factor :
High / CVSS Base Score : 7.5
(CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P)
|
| CVE |
NOCVE |
| Bugtraq |
NOBID |
| Copyright |
(C) 2009 Tenable Network Security, Inc. |
|
|