Total vulnerabilities in the database
ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, which allows remote attackers to obtain SSH access by leveraging knowledge of a private key from another installation or a firmware image.
Software | From | Fixed in |
---|---|---|
exagrid / ex3000_firmware | 4.8 | 4.8.x |
exagrid / ex5000_firmware | 4.8 | 4.8.x |
exagrid / ex7000_firmware | 4.8 | 4.8.x |
exagrid / ex10000e_firmware | 4.8 | 4.8.x |
exagrid / ex13000e_firmware | 4.8 | 4.8.x |
exagrid / ex21000e_firmware | 4.8 | 4.8.x |
exagrid / ex32000e_firmware | 4.8 | 4.8.x |
exagrid / ex40000e_firmware | 4.8 | 4.8.x |