depthsecurity/NetMRI-2014-3418

depthsecurity/NetMRI-2014-3418

Releases0
Stars9

CVE History

CVEPublishedCVSS v3CVSS v2
10 HIGH

config/userAdmin/login.tdf in Infoblox NetMRI before 6.8.5 allows remote attackers to execute arbitrary commands via shell metacharacters in the skipjackUsername parameter.

7.2 HIGH

Infoblox NetMRI before 6.8.5 has a default password of admin for the "root" MySQL database account, which makes it easier for local users to obtain access via unspecified vectors.