Vulnerabilities > CVE-2015-8282 - Credentials Management vulnerability in Seawell Networks Spectrum SDC 02.05.00

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
seawell-networks
CWE-255
critical
exploit available

Summary

SeaWell Networks Spectrum SDC 02.05.00 has a default password of "admin" for the "admin" account.

Vulnerable Configurations

Part Description Count
Application
Seawell_Networks
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionSeaWell Networks Spectrum - Multiple Vulnerabilities. CVE-2015-8282,CVE-2015-8283,CVE-2015-8284. Webapps exploit for php platform
fileexploits/php/webapps/39266.txt
idEDB-ID:39266
last seen2016-02-04
modified2016-01-18
platformphp
port443
published2016-01-18
reporterKarn Ganeshen
sourcehttps://www.exploit-db.com/download/39266/
titleSeaWell Networks Spectrum - Multiple Vulnerabilities
typewebapps

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/135311/sns-traversalcredsescalate.txt
idPACKETSTORM:135311
last seen2016-12-05
published2016-01-18
reporterKarn Ganeshen
sourcehttps://packetstormsecurity.com/files/135311/SeaWell-Networks-Spectrum-SDC-02.05.00-Traversal-Privilege-Escalation.html
titleSeaWell Networks Spectrum SDC 02.05.00 Traversal / Privilege Escalation