eVisitorPass contains default administrative credentials. An attacker could exploit this vulnerability to gain full access to the application.
The product initializes or sets a resource with a default that is intended to be changed by the administrator, but the default is not secure.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/149657 | third party advisory vdb entry |