CVE-2012-4702

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
11/03/2013
Last modified:
11/04/2025

Description

360 Systems Maxx, Image Server Maxx, and Image Server 2000 have a hardcoded password for the root account, which makes it easier for remote attackers to execute arbitrary code, or modify video content or scheduling, via an SSH session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:360systems:image_server_2000:-:*:*:*:*:*:*:*
cpe:2.3:o:360systems:image_server_maxx:-:*:*:*:*:*:*:*
cpe:2.3:o:360systems:maxx:-:*:*:*:*:*:*:*