The FTP server on the Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware through 1.60 IR 04 has hardcoded credentials, which makes it easier for remote attackers to obtain access via an FTP session.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-15-020-02 | us government resource patch |
http://www.securityfocus.com/bid/72258 | vdb entry |
http://www.securityfocus.com/bid/77765 | vdb entry |