Record summary

CVE-2021-27856 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p91 and 10.2.2r42 includes an account named "cmuser" that has administrative privileges and no password. Older versions of FatPipe software may also be vulnerable. The FatPipe advisory identifier for this vulnerability is FPSA002.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · May 5, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

4
ProductSourceVersion rangeStatus
CVE List10.1 to < 10.1.2r60p91affected
10.2 to < 10.2.2r42affected
CVE List10.1 to < 10.1.2r60p91affected
10.2 to < 10.2.2r42affected
CVE List10.1 to < 10.1.2r60p91affected
10.2 to < 10.2.2r42affected
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryCRITICALFatPipe WARP/IPVPN/MPVPN - Backdoor AccountCVSS 9.8

FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p91 and 10.2.2r42 contain an account named "cmuser" with administrative privileges and no password, letting attackers gain unauthorized admin access, exploit requires no authentication.

Impact

Unauthenticated attackers can gain unauthorized administrative access via a backdoor account with no password, leading to complete device compromise.

Remediation

Upgrade to FatPipe WARP/IPVPN/MPVPN version 10.1.2r60p91 or 10.2.2r42 or later.

Authorsgy741
Template tagscvecve2021fatpipedefault-loginbackdoorauth-bypassvkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:o:fatpipeinc:warp_firmware:*:*:*:*:*:*:*:*

Source: ProjectDiscovery

References

4