CVE-2009-1745

EUVD-2009-1740
Armorlogic Profense Web Application Firewall before 2.2.22, and 2.4.x before 2.4.4, has a default root password hash, and permits password-based root logins over SSH, which makes it easier for remote attackers to obtain access.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
Affected Products (NVD)
VendorProductVersion
armorlogicprofense_web_application_firewall
𝑥
≤ 2.2.21
armorlogicprofense_web_application_firewall
2.4
𝑥
= Vulnerable software versions
Common Weakness Enumeration