First published: Tue Jul 15 2014(Updated: )
Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to obtain access via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
mri | <=6.8.4 | |
mri | =6.0.2.42 | |
mri | =6.1.2 | |
mri | =6.2.1 | |
mri | =6.2.1.48 | |
mri | =6.8.2.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-3419 is considered a moderate severity vulnerability due to its exploitation potential through a weak default password.
To fix CVE-2014-3419, change the default 'admin' password for the 'root' MySQL database account to a strong, unique password.
CVE-2014-3419 affects Infoblox NetMRI versions prior to 6.8.5, including 6.0.2.42, 6.1.2, 6.2.1, and 6.8.2.11.
Yes, local users can exploit CVE-2014-3419 to gain unauthorized access to the MySQL database due to the default password.
The primary workaround for CVE-2014-3419 is to immediately change the default MySQL password to enhance security.