CVE-2012-2441 EXPLOIT
8.5
HIGH · CVSS 2.0 · EPSS 8.5% (pctl 95)
Patch early
A public exploit exists.
Description
RuggedCom Rugged Operating System (ROS) before 3.3 has a factory account with a password derived from the MAC Address field in a banner, which makes it easier for remote attackers to obtain access by performing a calculation on this address value, and then establishing a (1) SSH or (2) HTTPS session, a different vulnerability than CVE-2012-1803.
Scoring
| CVSS | 8.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:S/C:C/I:C/A:C |
| EPSS | 8.52% — more likely to be exploited than 95% of all CVEs |
| Weakness | CWE-521 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-04-28 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| siemens | ruggedcom rugged operating system |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | RuggedCom Devices - Backdoor Access | 2012-04-24 |
References
- http://arstechnica.com/business/news/2012/04/backdoor-in-mission-critical-hardware-threatens-power-traffic-control-systems.ars
- http://seclists.org/fulldisclosure/2012/Apr/277
- http://www.kb.cert.org/vuls/id/889195
- http://www.ruggedcom.com/productbulletin/ros-security-page/
- http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-12-116-01A.pdf
- http://www.wired.com/threatlevel/2012/04/ruggedcom-backdoor/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75244
- http://arstechnica.com/business/news/2012/04/backdoor-in-mission-critical-hardware-threatens-power-traffic-control-systems.ars
- http://seclists.org/fulldisclosure/2012/Apr/277
- http://www.kb.cert.org/vuls/id/889195
- http://www.ruggedcom.com/productbulletin/ros-security-page/
- http://www.us-cert.gov/control_systems/pdf/ICS-ALERT-12-116-01A.pdf
- http://www.wired.com/threatlevel/2012/04/ruggedcom-backdoor/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75244
→ the Explorer · watch your stack · NVD