CVE-2002-1936
Last modified
CVE-2002-1936 is a vulnerability of currently unknown severity. UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to gain access via (1) field account with a password of "*field", (2) guru account with a password of "*3noguru", (3) snmp account with a password of "snmp", or (4) dbase account with a password of "dbase".. EPSS estimates a 1.53% chance of exploitation in the next 30 days.
Description
UTStarcom BAS 1000 3.1.10 creates several default or back door accounts and passwords, which allows remote attackers to gain access via (1) field account with a password of "*field", (2) guru account with a password of "*3noguru", (3) snmp account with a password of "snmp", or (4) dbase account with a password of "dbase".
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Utstarcom | Bas 1000 | 3.1.10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-1936?
How severe is CVE-2002-1936?
How do I fix CVE-2002-1936?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-1930Buffer overflow in AN HTTPd 1.38 through 1.4.1c allows remot…
- CVE-2002-1931Cross-site scripting (XSS) vulnerability in PHP Arena paFile…
- CVE-2002-1932Microsoft Windows XP and Windows 2000, when configured to se…
- CVE-2002-1933The terminal services screensaver for Microsoft Windows 2000…
- CVE-2002-1934Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through …
- CVE-2002-1935Pingtel Xpressa 1.2.5 through 2.0.1 uses predictable (1) Cal…
- CVE-2002-1937Symantec Firewall/VPN Appliance 100 through 200R hardcodes t…
- CVE-2002-1938Virgil CGI Scanner 0.9 allows remote attackers to execute ar…
- CVE-2002-1939FlashFXP 1.4 prints FTP passwords in plaintext when there ar…
- CVE-2002-1940LCC-Win32 3.2 compiler, when running on Windows 95, 98, or M…
- CVE-2002-1941Buffer overflow in RadioBird WebServer 4 Everyone 1.28 allow…
- CVE-2002-1942Imatix Xitami 2.5 b5 does not properly terminate certain Kee…
Are you affected by CVE-2002-1936?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
