CVE-2015-7921

CWE-2553 documents3 sources
Severity
9.1CRITICAL
EPSS
0.4%
top 39.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 6
Latest updateMay 13

Description

The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 has hardcoded credentials, which makes it easier for remote attackers to bypass authentication by leveraging knowledge of these credentials.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NExploitability: 3.9 | Impact: 5.2

🔴Vulnerability Details

2
GHSA
GHSA-g74m-hx23-42v5: The FTP server in Pro-face GP-Pro EX EX-ED before 42022-05-13
CVEList
CVE-2015-7921: The FTP server in Pro-face GP-Pro EX EX-ED before 42016-04-06
CVE-2015-7921 (CRITICAL CVSS 9.1) | The FTP server in Pro-face GP-Pro E | cvebase.io