Description
The Orca HCM digital learning platform uses a weak factory default administrator password, which is hard-coded in the source code of the webpage in plain text, thus remote attackers can obtain administrator’s privilege without logging in.
No analysis available yet.
Remediation
Vendor Solution
Update Orca HCM to version 10.9
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-22598 | The Orca HCM digital learning platform uses a weak factory default administrator password, which is hard-coded in the source code of the webpage in plain text, thus remote attackers can obtain administrator’s privilege without logging in. |
References
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-17T01:11:36.678Z
Reserved: 2021-06-30T00:00:00.000Z
Link: CVE-2021-35965
No data.
Status : Modified
Published: 2021-07-19T12:15:08.490
Modified: 2024-11-21T06:12:51.057
Link: CVE-2021-35965
No data.
OpenCVE Enrichment
No data.
EUVD