CVE-2010-4965

CWE-2553 documents3 sources
Severity
9.0CRITICAL
EPSS
0.6%
top 29.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 16
Latest updateMay 17

Description

/etc/rc.d/rc.local on the D-Link DCS-2121 camera with firmware 1.04 configures a hardcoded password of admin for the root account, which makes it easier for remote attackers to obtain shell access by leveraging a running telnetd server.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 8.0 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-wf3q-987m-hfcv: /etc/rc2022-05-17
CVEList
CVE-2010-4965: /etc/rc2011-10-16
CVE-2010-4965 (CRITICAL CVSS 9) | /etc/rc.d/rc.local on the D-Link DC | cvebase.io