An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices. They contain two undocumented administrator accounts. The sftp and mofidev accounts are defined in /etc/passwd and the password is not unique across installations.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-6069 An issue was discovered on Mofi Network MOFI4500-4GXeLTE 3.6.1-std and 4.0.8-std devices. They contain two undocumented administrator accounts. The sftp and mofidev accounts are defined in /etc/passwd and the password is not unique across installations.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T12:32:13.942Z

Reserved: 2020-06-04T00:00:00

Link: CVE-2020-13858

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-02-01T02:15:14.707

Modified: 2024-11-21T05:02:01.413

Link: CVE-2020-13858

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses