CyberSec.Space Logo
CVEブラウザに戻る

CVE-2021-27437

CRITICAL
9.1
CVSS Severity Score
EPSS Score0.1560%
EPSS Percentile38.02th
Published2021年5月7日
Last Modified2024年11月21日

Vulnerability Description

The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard. The system contains a hard-coded administrator username and password that can be used to query Grafana APIs. Authentication is not required for exploitation on the WISE-PaaS/RMM (versions prior to 9.0.1).

Affected Platforms (CPE)

📦
Advantech

Wise Paas\/rmm

< 9.0.1

References & Advisories

関連する脆弱性情報