CVE-2014-5334

Severity CVSS v4.0:
Pending analysis
Type:
CWE-254 Security Features
Publication date:
08/01/2018
Last modified:
29/01/2018

Description

FreeNAS before 9.3-M3 has a blank admin password, which allows remote attackers to gain root privileges by leveraging a WebGui login.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:freenas:freenas:*:*:*:*:*:*:*:* 9.2.1.7 (including)
cpe:2.3:a:freenas:freenas:9.3:m1:*:*:*:*:*:*
cpe:2.3:a:freenas:freenas:9.3:m2:*:*:*:*:*:*
cpe:2.3:a:freenas:freenas:9.3:m3:*:*:*:*:*:*