ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, which allows remote attackers to obtain SSH access by leveraging knowledge of a private key from another installation or a firmware image.

Project Subscriptions

Vendors Products
Exagrid Subscribe
Ex10000e Subscribe
Ex10000e Firmware Subscribe
Ex13000e Subscribe
Ex13000e Firmware Subscribe
Ex21000e Subscribe
Ex21000e Firmware Subscribe
Ex3000 Firmware Subscribe
Ex32000e Subscribe
Ex32000e Firmware Subscribe
Ex40000e Subscribe
Ex40000e Firmware Subscribe
Ex5000 Firmware Subscribe
Ex7000 Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published:

Updated: 2024-08-05T23:02:12.077Z

Reserved: 2016-01-07T00:00:00

Link: CVE-2016-1561

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-04-21T20:59:00.477

Modified: 2025-04-20T01:37:25.860

Link: CVE-2016-1561

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses