Skip to main content

Credentials Management Errors

CVE-2012-4362

Severity Medium
Score 4/10

Summary

hydra.exe in HP SAN/iQ before 9.5 on the HP Virtual SAN Appliance has a hardcoded password of L0CAlu53R for the global$agent account, which allows remote attackers to obtain access to a management service via a login: request to TCP port 13838.

  • LOW
  • NETWORK
  • SINGLE
  • PARTIAL
  • NONE
  • NONE

CWE-255 - Credentials Management Errors

Weaknesses in this category are related to the management of credentials.

References

Advisory Timeline

  • Published