OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.opennms.org/wiki/CVE-2015-0975 | vendor advisory |
http://www.rapid7.com/db/modules/auxiliary/gather/opennms_xxe | exploit |