ID

VAR-201704-0309


CVE

CVE-2016-1561


TITLE

ExaGrid In the appliance firmware SSH Vulnerability for which access rights are acquired

Trust: 0.8

sources: JVNDB: JVNDB-2016-008503

DESCRIPTION

ExaGrid appliances with firmware before 4.8 P26 have a default SSH public key in the authorized_keys file for root, which allows remote attackers to obtain SSH access by leveraging knowledge of a private key from another installation or a firmware image. ExaGrid is prone to multiple unauthorized-access vulnerabilities. Successfully exploiting these issues may allow an attacker to gain unauthorized access, obtain sensitive information and perform unauthorized actions; This may lead to other attacks. ExaGrid is a backup and recovery storage device based on the Linux platform of ExaGrid Company of the United States that provides deduplication function. ExaGrid appliances using firmware versions prior to 4.8 P26 have a security vulnerability

Trust: 2.07

sources: NVD: CVE-2016-1561 // JVNDB: JVNDB-2016-008503 // BID: 86020 // VULHUB: VHN-90380 // VULMON: CVE-2016-1561

AFFECTED PRODUCTS

vendor:exagridmodel:ex10000escope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex13000escope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex21000escope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex3000scope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex32000escope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex40000escope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex5000scope:eqversion:4.8

Trust: 2.4

vendor:exagridmodel:ex7000scope:eqversion:4.8

Trust: 2.4

sources: JVNDB: JVNDB-2016-008503 // CNNVD: CNNVD-201604-169 // NVD: CVE-2016-1561

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2016-1561
value: HIGH

Trust: 1.0

NVD: CVE-2016-1561
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201604-169
value: MEDIUM

Trust: 0.6

VULHUB: VHN-90380
value: MEDIUM

Trust: 0.1

VULMON: CVE-2016-1561
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2016-1561
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

VULHUB: VHN-90380
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

nvd@nist.gov: CVE-2016-1561
baseSeverity: HIGH
baseScore: 7.5
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 3.6
version: 3.0

Trust: 1.8

sources: VULHUB: VHN-90380 // VULMON: CVE-2016-1561 // JVNDB: JVNDB-2016-008503 // CNNVD: CNNVD-201604-169 // NVD: CVE-2016-1561

PROBLEMTYPE DATA

problemtype:CWE-200

Trust: 1.9

sources: VULHUB: VHN-90380 // JVNDB: JVNDB-2016-008503 // NVD: CVE-2016-1561

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201604-169

TYPE

information disclosure

Trust: 0.6

sources: CNNVD: CNNVD-201604-169

CONFIGURATIONS

sources: JVNDB: JVNDB-2016-008503

EXPLOIT AVAILABILITY

sources: VULHUB: VHN-90380 // VULMON: CVE-2016-1561

PATCH

title:Top Pageurl:http://www.exagrid.com/

Trust: 0.8

sources: JVNDB: JVNDB-2016-008503

EXTERNAL IDS

db:NVDid:CVE-2016-1561

Trust: 2.9

db:PACKETSTORMid:136634

Trust: 2.6

db:JVNDBid:JVNDB-2016-008503

Trust: 0.8

db:CNNVDid:CNNVD-201604-169

Trust: 0.7

db:BIDid:86020

Trust: 0.4

db:EXPLOIT-DBid:41680

Trust: 0.2

db:VULHUBid:VHN-90380

Trust: 0.1

db:VULMONid:CVE-2016-1561

Trust: 0.1

sources: VULHUB: VHN-90380 // VULMON: CVE-2016-1561 // BID: 86020 // JVNDB: JVNDB-2016-008503 // CNNVD: CNNVD-201604-169 // NVD: CVE-2016-1561

REFERENCES

url:http://packetstormsecurity.com/files/136634/exagrid-known-ssh-key-default-password.html

Trust: 2.6

url:http://www.rapid7.com/db/modules/exploit/linux/ssh/exagrid_known_privkey

Trust: 1.9

url:https://community.rapid7.com/community/infosec/blog/2016/04/07/r7-2016-04-exagrid-backdoor-ssh-keys-and-hardcoded-credentials

Trust: 1.8

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2016-1561

Trust: 0.8

url:https://nvd.nist.gov/vuln/detail/cve-2016-1561

Trust: 0.8

url:https://cwe.mitre.org/data/definitions/200.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.securityfocus.com/bid/86020

Trust: 0.1

url:https://www.exploit-db.com/exploits/41680/

Trust: 0.1

sources: VULHUB: VHN-90380 // VULMON: CVE-2016-1561 // JVNDB: JVNDB-2016-008503 // CNNVD: CNNVD-201604-169 // NVD: CVE-2016-1561

CREDITS

egypt

Trust: 0.6

sources: CNNVD: CNNVD-201604-169

SOURCES

db:VULHUBid:VHN-90380
db:VULMONid:CVE-2016-1561
db:BIDid:86020
db:JVNDBid:JVNDB-2016-008503
db:CNNVDid:CNNVD-201604-169
db:NVDid:CVE-2016-1561

LAST UPDATE DATE

2024-11-23T22:01:11.859000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-90380date:2017-04-27T00:00:00
db:VULMONid:CVE-2016-1561date:2017-04-27T00:00:00
db:BIDid:86020date:2016-04-06T00:00:00
db:JVNDBid:JVNDB-2016-008503date:2017-05-25T00:00:00
db:CNNVDid:CNNVD-201604-169date:2017-04-21T00:00:00
db:NVDid:CVE-2016-1561date:2024-11-21T02:46:38.530

SOURCES RELEASE DATE

db:VULHUBid:VHN-90380date:2017-04-21T00:00:00
db:VULMONid:CVE-2016-1561date:2017-04-21T00:00:00
db:BIDid:86020date:2016-04-06T00:00:00
db:JVNDBid:JVNDB-2016-008503date:2017-05-25T00:00:00
db:CNNVDid:CNNVD-201604-169date:2016-04-11T00:00:00
db:NVDid:CVE-2016-1561date:2017-04-21T20:59:00.477