Summary
The remote OpenMediaVault web interface is prone to a default account authentication bypass vulnerability.
Impact
This issue may be exploited by a remote attacker to gain access to sensitive information or modify system configuration.
Solution
Change the password.
Insight
It was possible to login with default credentials admin/openmediavault
Detection
Try to login with default credentials.
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Xerox Printer Default Account Authentication Bypass Vulnerability
- Cisco TANDBERG C Series and E/EX Series Default Credentials Authentication Bypass Vulnerability
- SSH Brute Force Logins with default Credentials
- CAREL pCOWeb Default Account Security Bypass Vulnerability
- Siemens Scalance Default Credentials