The web component in Philips Electronics VOIP841 DECT Phone with firmware 1.0.4.50 and 1.0.4.80 has a back door "service" account with "service" as its password, which makes it easier for remote attackers to obtain access.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
https://www.exploit-db.com/exploits/5113 | exploit |
http://secunia.com/advisories/28978 | third party advisory vendor advisory |
http://osvdb.org/42940 | vdb entry |
http://www.securityfocus.com/bid/27790 | vdb entry |
http://www.vupen.com/english/advisories/2008/0583 | vdb entry |
http://www.securenetwork.it/ricerca/advisory/download/SN-2008-01.txt | exploit |
http://www.securityfocus.com/archive/1/488127/100/200/threaded | mailing list |
http://securityreason.com/securityalert/4536 | third party advisory |
http://archives.neohapsis.com/archives/bugtraq/2008-02/0227.html | mailing list |