CVE-2015-7856: Critical severity opennms horizon vulnerability
Published Oct 16, 2015
·Updated
OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials.
Affected Software
1 affected component
OpenNMS OpenNMS
Event History
Oct 16, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7856?
CVE-2015-7856 is considered a high severity vulnerability due to its exploitation potential via the default password.
2
How do I fix CVE-2015-7856?
To fix CVE-2015-7856, immediately change the default password for the rtc account to a strong, unique password.
3
Who is affected by CVE-2015-7856?
All installations of OpenNMS using the default rtc password are vulnerable to CVE-2015-7856.
4
Can CVE-2015-7856 be exploited remotely?
Yes, CVE-2015-7856 can be exploited remotely if the default password is not changed.
5
What impact does CVE-2015-7856 have on system security?
CVE-2015-7856 allows unauthorized access to the OpenNMS system, potentially compromising sensitive data and functionalities.