CVE-2004-2048
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD
Description
radmin in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier starts a process port 25072 that can be accessed with a default "jstwo" password, which allows remote attackers to gain access.
Affected (7)
Products: Esesix: Thintune Extreme, Thintune L, Thintune M, Thintune Mobile, Thintune S, Thintune Xm, Thintune Xs
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.4.38 | |
| Version 2.4.38 | |
| Version 2.4.38 | |
| Version 2.4.38 | |
| Version 2.4.38 | |
| Version 2.4.38 | |
| Version 2.4.38 |
References (12)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.