CVE-2012-4577
published 2012-08-21CVE-2012-4577: The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded…
PriorityP359critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
3.60%
88.9th percentile
The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, which allows remote attackers to obtain administrative access via an SSH session.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| korenix | jetport | — | — |
| korenix | jetport | — | — |
| korenix | jetport | — | — |
| korenix | jetport | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
cisa9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA
PHP-CGI OS Command Injection Vulnerability
cisa·2024-06-12·CVSS 9.8
CVE-2024-4577 [CRITICAL] CWE-78 PHP-CGI OS Command Injection Vulnerability
Vulnerability: PHP-CGI OS Command Injection Vulnerability
Affected: PHP Group PHP
PHP, specifically Windows-based PHP used in CGI mode, contains an OS command injection vulnerability that allows for arbitrary code execution. This vulnerability is a patch bypass for CVE-2012-1823.
Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Notes: This vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please see: https://www.php.net/ChangeLog-8.php#; https://nvd.nist.gov/vuln/detail/CVE-2024-4577
Remediation Due Date: 2024-07-03
CISA ICS
Korenix Jetport 5600 Series Hard-coded Credentials
cisa_ics·2018-09-05
Korenix Jetport 5600 Series Hard-coded Credentials
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Korenix Jetport 5600 Series Hard-coded Credentials
Last RevisedSeptember 05, 2018
Alert CodeICSA-12-297-02
## Overview
This advisory provides mitigation details for a vulnerability that impacts the Korenix JetPort 5600.
Independent researcher Reid Wightman of Digital Bond identified undocumented hard-coded root credentials in the firmware of the Korenix JetPort 5600 system application without coordination with ICS-CERT, the vendor, or any other coordinating entity known to ICS-CERT. The Korenix JetPort is an industrial serial device server to control multiple serial devices ove
CISA ICS
ORing Industrial Networking IDS-5042/5042+ Hard-Coded Credential Vulnerability
cisa_ics·2013-04-22
ORing Industrial Networking IDS-5042/5042+ Hard-Coded Credential Vulnerability
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
ORing Industrial Networking IDS-5042/5042+ Hard-Coded Credential Vulnerability
Last RevisedApril 22, 2013
Alert CodeICSA-12-263-02
## Overview
Independent researcher Reid Wightman of Digital BondKorenix and ORing Use Crypto, http://www.digitalbond.com/2012/06/13/korenix-and-oring-insecurity/, Web site last accessed September 19, 2012. identified hard-coded credentials in the operating system of the ORing Industrial DIN-Rail Device Server 5042/5042+ systems and publicly released this information without coordination with ICS-CERT, the vendor, or any other coordinating entity know
GHSA
GHSA-3x4p-qxv4-r792: The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardco
ghsa_unreviewed·2022-05-17
CVE-2012-4577 [HIGH] GHSA-3x4p-qxv4-r792: The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardco
The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, which allows remote attackers to obtain administrative access via an SSH session.
No detection rules found.
No public exploits indexed.
http://ics-cert.us-cert.gov/advisories/ICSA-12-263-02http://ics-cert.us-cert.gov/advisories/ICSA-12-297-02http://www.digitalbond.com/2012/06/13/korenix-and-oring-insecurityhttp://www.securityfocus.com/bid/55196https://exchange.xforce.ibmcloud.com/vulnerabilities/77992http://ics-cert.us-cert.gov/advisories/ICSA-12-263-02http://ics-cert.us-cert.gov/advisories/ICSA-12-297-02http://www.digitalbond.com/2012/06/13/korenix-and-oring-insecurityhttp://www.securityfocus.com/bid/55196https://exchange.xforce.ibmcloud.com/vulnerabilities/77992
2012-08-21
Published