CVE-2014-9576

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
08/01/2015
Last modified:
12/04/2025

Description

VDG Security SENSE (formerly DIVA) 2.3.13 has a hardcoded password of (1) ArpaRomaWi for the root Postgres account and !DVService for the (2) postgres and (3) NTP Windows user accounts, which allows remote attackers to obtain access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vdgsecurity:vdg_sense:2.3.13:*:*:*:*:*:*:*