First published: Mon Sep 18 2023(Updated: )
Hard-coded credentials in Juplink RX4-1500 versions V1.0.2 through V1.0.5 allow unauthenticated attackers to log in to the web interface or telnet service as the 'user' user.
Credit: disclosures@exodusintel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Juplink RX4-1500 Firmware | >=1.0.2<=1.0.5 | |
Juplink RX4-1500 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-41030.
The severity of CVE-2023-41030 is critical with a CVSS score of 9.8.
Juplink RX4-1500 versions V1.0.2 through V1.0.5 are affected by CVE-2023-41030.
Unauthenticated attackers can exploit CVE-2023-41030 by logging in to the web interface or telnet service as the 'user' user using the hard-coded credentials.
There is no information available regarding a fix for CVE-2023-41030. It is recommended to follow the recommendations provided by the vendor or security advisories.