Vulnerability Description
Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ceragon | Fiberair Ip-10C | - |
| Ceragon | Fiberair Ip-10E | - |
| Ceragon | Fiberair Ip-10G | - |
Related Weaknesses (CWE)
References
- http://www.kb.cert.org/vuls/id/936356Third Party AdvisoryUS Government Resource
- http://www.kb.cert.org/vuls/id/936356Third Party AdvisoryUS Government Resource
FAQ
What is CVE-2015-0924?
CVE-2015-0924 is a vulnerability with a CVSS score of 7.8 (HIGH). Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session.
How severe is CVE-2015-0924?
CVE-2015-0924 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-0924?
Check the references section above for vendor advisories and patch information. Affected products include: Ceragon Fiberair Ip-10C, Ceragon Fiberair Ip-10E, Ceragon Fiberair Ip-10G.