CVE Vulnerabilities

CVE-2012-4577

Published: Aug 21, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of password for the root account, which allows remote attackers to obtain administrative access via an SSH session.

Affected Software

NameVendorStart VersionEnd Version
JetportKorenix5601 (including)5601 (including)
JetportKorenix5601f (including)5601f (including)
JetportKorenix5604 (including)5604 (including)
JetportKorenix5604i (including)5604i (including)

References