EMC Cloud Tiering Appliance User Interface Default Credentials

critical Nessus Plugin ID 73372

Synopsis

The remote web service is protected using a default set of known credentials.

Description

The remote EMC Cloud Tiering Appliance user interface uses a known set of default credentials. Knowing these, an attacker with access to the service can gain administrative access to the device.

Solution

Change the default admin login credentials.

Plugin Details

Severity: Critical

ID: 73372

File Name: emc_cta_default_creds.nasl

Version: 1.4

Type: remote

Family: CGI abuses

Published: 4/7/2014

Updated: 1/19/2021

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/h:emc:cloud_tiering_appliance, cpe:/a:emc:cloud_tiering_appliance_virtual_edition

Required KB Items: www/emc_cta_ui

Excluded KB Items: global_settings/supplied_logins_only