CVE-2004-2048
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
20/11/2024
Description
radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:h:esesix:thintune_extreme:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_l:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_m:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_mobile:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_s:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_xm:2.4.38:*:*:*:*:*:*:* | ||
cpe:2.3:h:esesix:thintune_xs:2.4.38:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=109068491801021&w=2
- http://secunia.com/advisories/12154
- http://securitytracker.com/id?1010770=
- http://www.osvdb.org/8246
- http://www.securityfocus.com/bid/10794
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16790
- http://marc.info/?l=bugtraq&m=109068491801021&w=2
- http://secunia.com/advisories/12154
- http://securitytracker.com/id?1010770=
- http://www.osvdb.org/8246
- http://www.securityfocus.com/bid/10794
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16790