CVE-2015-2915

Published Sep 21, 2015

Last updated 9 years ago

Overview

Description
Securifi Almond devices with firmware before AL1-R201EXP10-L304-W34 and Almond-2015 devices with firmware before AL2-R088M have a default password of admin for the admin account, which allows remote attackers to obtain web-management access by leveraging the ability to authenticate from the intranet.
Source
cret@cert.org
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
7.3
Impact score
8.5
Exploitability score
6.5
Vector string
AV:A/AC:L/Au:N/C:P/I:P/A:C

Weaknesses

nvd@nist.gov
CWE-255

Social media

Hype score
Not currently trending

Configurations