First published: Sat Nov 12 2011(Updated: )
The Dell KACE K2000 System Deployment Appliance has a default username and password for the read-only reporting account, which makes it easier for remote attackers to obtain sensitive information from the database by leveraging the default credentials.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Quest KACE Systems Deployment Appliance |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4048 is rated as a high severity vulnerability due to its potential to expose sensitive information through default credentials.
To fix CVE-2011-4048, change the default username and password for the read-only reporting account on the Dell KACE K2000 System Deployment Appliance.
The risks associated with CVE-2011-4048 include unauthorized access to sensitive database information by remote attackers.
Organizations using the Dell KACE K2000 System Deployment Appliance with default reporting account credentials are affected by CVE-2011-4048.
To secure your system against CVE-2011-4048, implement strong, unique passwords and regularly review account access settings.