Showing 2 vulnerabilities on this page for skybridge_mb-a200_firmware

Signals CISA KEV Ransomware Nuclei
seiko-sol vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

seiko-sol skybridge_mb-a200_firmware Use of Hard-coded Credentials

Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain multiple hard-coded passcodes for root. Attackers are able to access the passcodes at /etc/srapi/config/system.conf and /usr/sbin/ssol-sshd.sh.

CWE-798Aug 29, 2022
CVSS9.8v3.1EPSS0.707%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

seiko-sol skybridge_mb-a200_firmware Improper Neutralization of Special Elements used in a Command ('Command Injection')

Seiko SkyBridge MB-A200 v01.00.04 and below was discovered to contain a command injection vulnerability via the Ping parameter at ping_exec.cgi.

CWE-77Aug 29, 2022
CVSS9.8v3.1EPSS1.73%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX