脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
Insecure, Hardcoded Root Password Stored in Anaconda Configuration File On IDC SFX2100 Satellite Receiver
脆弱性説明
The /root/anaconda-ks.cfg installation configuration file in International Datacasting Corporation (IDC) SFX Series(SFX2100) SuperFlex Satellite Receiver insecurely stores the hardcoded root password hash. The password itself is highly insecure and susceptible to offline dictionary attacks using the rockyou.txt wordlist. Because direct root SSH login is disabled, an attacker must first obtain low-privileged access to the system (e.g., via other vulnerabilities) to be able to log in as the root user. The password is hardcoded and so allows for an actor with local access on effected versions to escalate to root
CVSS情報
N/A
脆弱性タイプ
使用硬编码的凭证
脆弱性タイトル
International Datacasting SFX2100 SuperFlex Satellite Receiver 安全漏洞
脆弱性説明
International Datacasting SFX2100 SuperFlex Satellite Receiver是美国International Datacasting公司的一个专业广播级卫星信号接收设备。 International Datacasting SFX2100 SuperFlex Satellite Receiver存在安全漏洞,该漏洞源于/root/anaconda-ks.cfg安装配置文件不安全地存储了硬编码的root密码哈希,且密码本身强度低易受离线字典攻击,可能导致已获得
CVSS情報
N/A
脆弱性タイプ
N/A