An attacker without authentication can login with default credentials for privileged users in Eltex ESP-200 firmware version 1.2.0.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://ics-cert.kaspersky.com/advisories/klcert-advisories/2018/08/17/klcert-18-016-eltex-esp-200-router-default-password-usage/ | us government resource mitigation vdb entry third party advisory |