This script is Copyright (C) 2009-2013 Tenable Network Security, Inc.
The remote web server is protected using default credentials.
The remote installation of A-A-S Application Access Server is
configured to use default credentials to control administrative access.
Knowing these, an attacker can gain administrative control of the
affected application and host.
See also :
Change the password for the 'admin' user.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 9.5
Public Exploit Available : true
Family: Web Servers
Nessus Plugin ID: 38761 (aas_default_creds.nasl)
Bugtraq ID: 34911
CVE ID: CVE-2009-1465
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.