CVE-2022-1668

CRITICAL

Weak Default Root User - Privilege Escalation

Title source: llm
STIX 2.1

Description

Weak default root user credentials allow remote attackers to easily obtain OS superuser privileges over the open TCP port for SSH.

Scores

CVSS v3 9.8
EPSS 0.0052
EPSS Percentile 67.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-521
Status published
Products (1)
secheron/sepcos_control_and_protection_relay_firmware 1.23.0 - 1.23.21
Published Jun 24, 2022
Tracked Since Feb 18, 2026