CVE-2015-7921

The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 has hardcoded credentials, which makes it easier for remote attackers to bypass authentication by leveraging knowledge of these credentials.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.1 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
VendorProductVersion
schneider-electricproface_gp-pro_ex_ex-ed
𝑥
≤ 4.0.4
schneider-electricproface_gp-pro_ex_pfxexedls
𝑥
≤ 4.0.4
schneider-electricproface_gp-pro_ex_pfxexedv
𝑥
≤ 4.0.4
schneider-electricproface_gp-pro_ex_pfxexgrpls
𝑥
≤ 4.0.4
𝑥
= Vulnerable software versions
Common Weakness Enumeration