First published: Sun Dec 31 2000(Updated: )
The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
APC PowerChute Network Shutdown |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1242 is considered a high severity vulnerability due to the potential for unauthorized remote access.
To fix CVE-2000-1242, change the default username and password of the APC PowerChute HTTP service.
CVE-2000-1242 affects versions of APC PowerChute that utilize the default login credentials.
The primary risk of CVE-2000-1242 is that attackers can gain unauthorized access to control the APC PowerChute system.
Yes, CVE-2000-1242 is commonly exploited due to the use of default credentials which can be easily guessed by attackers.