The login function in the RequestController class in Moxa OnCell Central Manager before 2.2 has a hardcoded root password, which allows remote attackers to obtain administrative access via a login session.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Oncell_central_manager | Moxa | * | 2.0 (including) |