CVE-2007-3232

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/06/2007
Last modified:
09/04/2025

Description

The IBM TotalStorage DS400 with firmware 4.15 uses a blank password for the (1) root, (2) user, (3) manager, (4) administrator, and (5) operator accounts, which allows remote attackers to gain login access via certain Linux daemons, including a telnet daemon on a nonstandard port, tcp/6000.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:ibm:totalstorage_ds400:4.15:*:*:*:*:*:*:*