CVE-2015-7911

UnknownEPSS 2.42%

Last modified

CVE-2015-7911 is a vulnerability of currently unknown severity. Saia Burgess PCD1.M0xx0, PCD1.M2xx0, PCD2.M5xx0, PCD3.Mxx60, PCD3.Mxxx0, PCD7.D4xxD, PCD7.D4xxV, PCD7.D4xxWTPF, and PCD7.D4xxxT5F devices before 1.24.50 and PCD3.T665 and PCD3.T666 devices before 1.24.41 have hardcoded credentials, which allows remote attackers to obtain administrative access via an FTP session.. EPSS estimates a 2.42% chance of exploitation in the next 30 days.

Description

Saia Burgess PCD1.M0xx0, PCD1.M2xx0, PCD2.M5xx0, PCD3.Mxx60, PCD3.Mxxx0, PCD7.D4xxD, PCD7.D4xxV, PCD7.D4xxWTPF, and PCD7.D4xxxT5F devices before 1.24.50 and PCD3.T665 and PCD3.T666 devices before 1.24.41 have hardcoded credentials, which allows remote attackers to obtain administrative access via an FTP session.

Metrics

EPSS Probability
2.42%

82.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
Saia Burgess ControlsPcd7.D4xxv Vga Mb Firmware<= 1.24.41
Saia Burgess ControlsPcd7.D4xxd Firmware<= 1.24.41
Saia Burgess ControlsPcd3.Mxxx0 Firmware<= 1.24.25
Saia Burgess ControlsPcd7.D4xxd Svga Mb Firmware<= 1.24.41
Saia Burgess ControlsPcd3.T666 Firmware<= 1.24.30
Saia Burgess ControlsPcd1.M2xx0 Firmware<= 1.24.25
Saia Burgess ControlsPcd3.Mxx60 Firmware<= 1.24.25
Saia Burgess ControlsPcd3.T665 Firmware<= 1.24.30
Saia Burgess ControlsPcd2.M5xx0 Firmware<= 1.24.25
Saia Burgess ControlsPcd7.D4xxwtpf Wvga Mb Firmware1.24.41
Saia Burgess ControlsPcd7.D4xxwtpf Firmware<= 1.24.41
Saia Burgess ControlsPcd1.M0xx0 Firmware<= 1.24.25
Saia Burgess ControlsPcd7.D4xxxt5f Firmware<= 1.24.41
Saia Burgess ControlsPcd7.D4xxv Firmware<= 1.24.41

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2015-7911?
Saia Burgess PCD1.M0xx0, PCD1.M2xx0, PCD2.M5xx0, PCD3.Mxx60, PCD3.Mxxx0, PCD7.D4xxD, PCD7.D4xxV, PCD7.D4xxWTPF, and PCD7.D4xxxT5F devices before 1.24.50 and PCD3.T665 and PCD3.T666 devices before 1.24.41 have hardcoded credentials, which allows remote attackers to obtain administrative access via an FTP session.
How severe is CVE-2015-7911?
Severity scoring for CVE-2015-7911 is pending analysis. The EPSS model estimates a 2.42% probability of exploitation in the next 30 days.
How do I fix CVE-2015-7911?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2015-7911?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST