CVE-2015-0936

Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ceragon:fibeair_ip-10_firmware:-:*:*:*:*:*:*:*
OR cpe:2.3:h:ceragon:fibeair_ip-10c:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fibeair_ip-10e:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fibeair_ip-10g:-:*:*:*:*:*:*:*

History

17 Jun 2021, 17:41

Type Values Removed Values Added
CPE cpe:2.3:o:ceragon:fiberair_ip-10_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fiberair_ip-10c:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fiberair_ip-10g:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fiberair_ip-10e:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fibeair_ip-10g:-:*:*:*:*:*:*:*
cpe:2.3:o:ceragon:fibeair_ip-10_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fibeair_ip-10e:-:*:*:*:*:*:*:*
cpe:2.3:h:ceragon:fibeair_ip-10c:-:*:*:*:*:*:*:*

Information

Published : 2017-06-01 16:29

Updated : 2023-12-10 12:15


NVD link : CVE-2015-0936

Mitre link : CVE-2015-0936

CVE.ORG link : CVE-2015-0936


JSON object : View

Products Affected

ceragon

  • fibeair_ip-10c
  • fibeair_ip-10e
  • fibeair_ip-10_firmware
  • fibeair_ip-10g
CWE
CWE-320

Key Management Errors