HIGH · 7.8

CVE-2015-0924

Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session.

Vulnerability Description

Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session.

CVSS Score

7.8

HIGH

AV:N/AC:L/Au:N/C:N/I:C/A:N
Confidentiality
NONE
Integrity
COMPLETE
Availability
NONE

Affected Products

VendorProductVersions
CeragonFiberair Ip-10C-
CeragonFiberair Ip-10E-
CeragonFiberair Ip-10G-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2015-0924?

CVE-2015-0924 is a vulnerability with a CVSS score of 7.8 (HIGH). Ceragon FibeAir IP-10 bridges have a default password for the root account, which makes it easier for remote attackers to obtain access via a (1) HTTP, (2) SSH, (3) TELNET, or (4) CLI session.

How severe is CVE-2015-0924?

CVE-2015-0924 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2015-0924?

Check the references section above for vendor advisories and patch information. Affected products include: Ceragon Fiberair Ip-10C, Ceragon Fiberair Ip-10E, Ceragon Fiberair Ip-10G.