The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of password for the root account, which allows remote attackers to obtain administrative access via an SSH session.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Jetport | Korenix | 5601 (including) | 5601 (including) |
Jetport | Korenix | 5601f (including) | 5601f (including) |
Jetport | Korenix | 5604 (including) | 5604 (including) |
Jetport | Korenix | 5604i (including) | 5604i (including) |