SEL Controller Default Credentials

high Nessus Plugin ID 57601

Synopsis

The remote device can be accessed with default credentials.

Description

The remote device appears to be a SEL controller that can be accessed using default credentials. An attacker could leverage this issue to gain administrative access to the affected device.

Solution

Change the default password or block access to the port.

Plugin Details

Severity: High

ID: 57601

File Name: scada_sel_default_telnet.nbin

Version: 1.70

Type: remote

Family: SCADA

Published: 1/19/2012

Updated: 3/19/2024

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: High

Base Score: 7.5

Temporal Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

Excluded KB Items: global_settings/supplied_logins_only

Exploit Available: true

Exploit Ease: No exploit is required