peter bassill · operator
$ cve CVE-2017-6351 JSON

CVE-2017-6351 EXPLOIT

8.1
HIGH · CVSS 3.0 · EPSS 7.1% (pctl 94)

Patch early

A public exploit exists.

Description

The WePresent WiPG-1500 device with firmware 1.0.3.7 has a manufacturer account that has a hardcoded username / password. Once the device is set to DEBUG mode, an attacker can connect to the device using the telnet protocol and log into the device with the 'abarco' hardcoded manufacturer account. This account is not documented, nor is the DEBUG feature or the use of telnetd on port tcp/5885.

Scoring

CVSS8.1 (HIGH, v3.0)
VectorCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS7.12% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-798
On CISA KEVno
Public exploityes
Published2017-03-06
Last modified2026-06-17

Affected (2)

VendorProduct
wepresentwipg-1500
wepresentwipg-1500 firmware

Public exploits

SourceTitleDate
exploit-dbWePresent WiPG-1500 - Backdoor Account2017-02-27

References

→ the Explorer  ·  watch your stack  ·  NVD