sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded rsadmin account with a null password, which allows remote attackers to execute arbitrary commands via ssh.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rapidstream | Rapidstream | 2000 (including) | 2000 (including) |
Rapidstream | Rapidstream | 4000 (including) | 4000 (including) |
Rapidstream | Rapidstream | 6000 (including) | 6000 (including) |
Rapidstream | Rapidstream | 8000 (including) | 8000 (including) |