CVE Vulnerabilities

CVE-2015-6412

Published: Jan 22, 2016 | Modified: Apr 12, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Cisco Modular Encoding Platform D9036 Software before 02.04.70 has hardcoded (1) root and (2) guest passwords, which makes it easier for remote attackers to obtain access via an SSH session, aka Bug ID CSCut88070.

Affected Software

NameVendorStart VersionEnd Version
Modular_encoding_platform_d9036_softwareCisco02.00.80 (including)02.00.80 (including)
Modular_encoding_platform_d9036_softwareCisco02.01.50 (including)02.01.50 (including)
Modular_encoding_platform_d9036_softwareCisco02.02.30 (including)02.02.30 (including)
Modular_encoding_platform_d9036_softwareCisco02.03.30 (including)02.03.30 (including)

References