CVE-2005-2026: High severity Enterasys Vertical Horizon-2402s vulnerability
Enterasys Vertical Horizon VH-2402S before firmware 2.05.05.09 has a hard-coded account and password for debugging, which allows remote attackers to gain privileges.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2026?
CVE-2005-2026 is considered a high severity vulnerability due to the potential for remote privilege escalation.
How do I fix CVE-2005-2026?
To fix CVE-2005-2026, upgrade the firmware of the Enterasys Vertical Horizon VH-2402S to version 2.05.05.09 or later.
What hardware is affected by CVE-2005-2026?
CVE-2005-2026 affects the Enterasys Vertical Horizon VH-2402S models running versions prior to 2.05.05.09.
Can CVE-2005-2026 be exploited remotely?
Yes, CVE-2005-2026 can be exploited remotely by attackers to gain unauthorized access due to hard-coded credentials.
What happens if CVE-2005-2026 is not addressed?
If CVE-2005-2026 is not addressed, malicious users may exploit the hard-coded debugging account to gain privileged access to the device.