The Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 have a default password for an administrative account, which makes it easier for remote attackers to obtain access via an IP network.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/AAMN-98MUK2 | us government resource |
http://www.kb.cert.org/vuls/id/662676 | third party advisory us government resource |
http://www.kb.cert.org/vuls/id/AAMN-98MU7H | us government resource |
http://www.monroe-electronics.com/MONROE_ELECTRONICS_PDF/130604-Monroe-Security-PR.pdf | vendor advisory |
http://www.digitalalertsystems.com/pdf/130604-Monroe-Security-PR.pdf | vendor advisory |