CVE-2021-28912
HIGHBab-technologie Eibport Firmware < 3.9.1 - Hard-coded Credentials
Title source: ruleDescription
BAB TECHNOLOGIE GmbH eibPort V3. Each device has its own unique hard coded and weak root SSH key passphrase known as 'eibPort string'. This is usable and the final part of an attack chain to gain SSH root access.
Scores
CVSS v3
7.2
EPSS
0.0092
EPSS Percentile
76.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-521
CWE-798
Status
published
Products (1)
bab-technologie/eibport_firmware
< 3.9.1
Published
Sep 09, 2021
Tracked Since
Feb 18, 2026