Vulnerabilities > Siklu > Etherhaul Firmware > 3.7.0

DATE CVE VULNERABILITY TITLE RISK
2017-03-30 CVE-2017-7318 Unspecified vulnerability in Siklu Etherhaul Firmware 3.7.0/6.0/7.3.0
Siklu EtherHaul devices before 7.4.0 are vulnerable to a remote command execution (RCE) vulnerability.
network
low complexity
siklu
critical
9.8
2017-03-30 CVE-2016-10308 Use of Hard-coded Credentials vulnerability in Siklu Etherhaul Firmware 3.7.0/6.0
Siklu EtherHaul radios before 3.7.1 and 6.x before 6.9.0 have a built-in, hidden root account, with an unchangeable password that is the same across all devices.
network
low complexity
siklu CWE-798
critical
9.8