CVE-2018-12323

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
13/06/2018
Last modified:
14/08/2018

Description

An issue was discovered on Momentum Axel 720P 5.1.8 devices. A password of EHLGVG is hard-coded for the root and admin accounts, which makes it easier for physically proximate attackers to login at the console.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:apollotechnologiesinc:momentum_axel_720p:*:*:*:*:*:*:*:*
cpe:2.3:o:apollotechnologiesinc:momentum_axel_720p_firmware:5.1.8:*:*:*:*:*:*:*