Exploitation Summary
EIP tracks 1 public exploit for CVE-2012-2994. PoCs published by Christopher Campbell.
AI-analyzed exploit summary This PowerShell script exploits an insecure password generation vulnerability in CoSoSys Endpoint Protector 4. It calculates the predictable root password using the device's serial number, allowing an attacker to gain unauthorized access.
Description
The CoSoSys Endpoint Protector 4 appliance establishes an EPProot password based entirely on the appliance serial number, which makes it easier for remote attackers to obtain access via a brute-force attack.
Exploits (1)
This PowerShell script exploits an insecure password generation vulnerability in CoSoSys Endpoint Protector 4. It calculates the predictable root password using the device's serial number, allowing an attacker to gain unauthorized access.