Alvarion Multiple Products Default Telnet Credentials

critical Nessus Plugin ID 72236

Synopsis

The remote device is using publicly known default credentials.

Description

Nessus was able to log in to the remote Alvarion device using default credentials. These credentials are publicly known and can allow an attacker to gain privileged access to the device.

Solution

Change the passwords on the default account.

See Also

http://www.nessus.org/u?b651eac1

Plugin Details

Severity: Critical

ID: 72236

File Name: alvarion_default_telnet_credentials.nasl

Version: 1.5

Type: remote

Family: Misc.

Published: 1/31/2014

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/h:alvarion:breezeaccess

Excluded KB Items: global_settings/supplied_logins_only

Vulnerability Publication Date: 8/1/2005