Home
CRITICAL: 9.3 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/AU:Y/U:RedDefault status
unaffected
0100b (custom)
affected
0100e
affected
0100e1
affected
0100e2
affected
0100f
affected
0100g
affected
0100i
affected
0101c
affected
0103c
affected
0199z
affected
0200a
affected
0200b
affected
0200c
affected
0200g
affected
0201a
affected
0201a1
affected
0201c
affected
0201k
affected
0202a
affected
0202b
affected
0203a
affected
0300a
affected
0300b
affected
0301b3
affected
0302a
affected
0302c
affected
0400a
affected
0400b
affected
0401a
affected
0500a
affected
0500b
affected
Description
Legacy Vivotek Device firmware uses default credetials for the root and user login accounts.
Problem types
CWE-1392 CWE-1392: Use of Default Credentials
Product status
0100b (custom)
0100e
0100e1
0100e2
0100f
0100g
0100i
0101c
0103c
0199z
0200a
0200b
0200c
0200g
0201a
0201a1
0201c
0201k
0202a
0202b
0203a
0300a
0300b
0301b3
0302a
0302c
0400a
0400b
0401a
0500a
0500b
Credits
Larry W. Cashdollar
References
www.akamai.com/...ch/rce-zero-day-in-legacy-vivotek-firmware
www.vapidlabs.com/advisory.php?v=219