CVE-2015-6412
CRITICALCisco Modular Encoding Platform D9036 Software - Hardcoded Credentials
Title source: llmDescription
Cisco Modular Encoding Platform D9036 Software before 02.04.70 has hardcoded (1) root and (2) guest passwords, which makes it easier for remote attackers to obtain access via an SSH session, aka Bug ID CSCut88070.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160120-d9036
Scores
CVSS v3
9.8
EPSS
0.0238
EPSS Percentile
82.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-255
Status
published
Products (4)
cisco/modular_encoding_platform_d9036_software
02.00.80
cisco/modular_encoding_platform_d9036_software
02.01.50
cisco/modular_encoding_platform_d9036_software
02.02.30
cisco/modular_encoding_platform_d9036_software
02.03.30
Published
Jan 22, 2016
Tracked Since
Feb 18, 2026