漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Hard-coded OS root credentials in eCharge Hardy Barth cPH2 / cPP2 charging stations
Vulnerability Description
The `/etc/passwd` and `/etc/shadow` files reveal hard-coded password hashes for the operating system "root" user. The credentials are shipped with the update files. There is no option for deleting or changing their passwords for an enduser. An attacker can use the credentials to log into the device. Authentication can be performed via SSH backdoor or likely via physical access (UART shell).
CVSS Information
N/A
Vulnerability Type
使用硬编码的凭证
Vulnerability Title
eCharge Hardy Barth cPH2和eCharge Hardy Barth cPP2 安全漏洞
Vulnerability Description
eCharge Hardy Barth cPH2和eCharge Hardy Barth cPP2都是eCharge公司的一款电动汽车充电站。 eCharge Hardy Barth cPH2和eCharge Hardy Barth cPP2存在安全漏洞,该漏洞源于/etc/passwd和/etc/shadow文件包含硬编码密码哈希,可能导致设备被入侵。
CVSS Information
N/A
Vulnerability Type
N/A