Summary
It is possible to connect to the remote database service using default credentials.
Description :
The remote Sybase SQL Anywhere / Adaptive Server Anywhere server uses default credentials ('DBA' / 'SQL'). An attacker may use this flaw to execute commands against the remote host, as well as read your database content.
Solution
Change the default password.
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- IBM DB2 SQL/PSM Stored Procedure Debugging Buffer Overflow Vulnerability (Linux)
- Oracle MySQL Multiple Unspecified vulnerabilities-02 Oct14 (Windows)
- Sybase ASA default database password
- IBM DB2 SQL/PSM Stored Procedure Debugging Buffer Overflow Vulnerability (Windows)
- IBM DB2 UDB Multiple Unspecified Vulnerabilities (Linux)