TROYANOSYVIRUS
Voltar para CVEs

CVE-2023-43845

CRITICAL
9.8

Descricao

Aten PE6208 2.3.228 and 2.4.232 have default credentials for the privileged telnet account. The user is not asked to change the credentials after first login. If not changed, attackers can log in to the telnet console and gain administrator privileges.

Detalhes CVE

Pontuacao CVSS v3.19.8
SeveridadeCRITICAL
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosNONE
Interacao do usuarioNONE
Publicado5/28/2024
Ultima modificacao5/30/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

aten:pe6208aten:pe6208_firmware

Fraquezas (CWE)

CWE-269

Referencias

https://github.com/setersora/pe6208(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.