Home
CRITICAL: 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HDefault status
affected
3.2.0.0 (semver)
affected
Description
Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.
Product status
3.2.0.0 (semver)
Credits
ZZ from Ubisectech Sirius Team
References
support.hpe.com/...y?docId=hpesbnw04894en_us&docLocale=en_US