CVE-2019-8950

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
20/02/2019
Last modified:
24/08/2020

Description

The backdoor account dnsekakf2$$ in /bin/login on DASAN H665 devices with firmware 1.46p1-0028 allows an attacker to login to the admin account via TELNET.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:dasannetworks:h665_firmware:1.46p1-0028:*:*:*:*:*:*:*
cpe:2.3:h:dasannetworks:h665:-:*:*:*:*:*:*:*