Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The INCLUDE_SECURITY functionality in Wind River VxWorks 6.x, 5.x, and earlier uses the LOGIN_USER_NAME and LOGIN_USER_PASSWORD (aka LOGIN_PASSWORD) parameters to create hardcoded credentials, which makes it easier for remote attackers to obtain access via a (1) telnet, (2) rlogin, or (3) FTP session.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Wind River VxWorks INCLUDE_SECURITY功能信任管理漏洞
Vulnerability Description
Wind River VxWorks 6.x, 5.x和之前版本中的INCLUDE_SECURITY功能使用LOGIN_USER_NAME 和LOGIN_USER_PASSWORD (又称 LOGIN_PASSWORD)参数创建硬编码凭证。远程攻击者可以借助(1) telnet, (2) rlogin或者(3) FTP会话更容易获取权限。
CVSS Information
N/A
Vulnerability Type
N/A