CVE-2023-37755
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Sep 14, 2023
Updated: Nov 7, 2023
CWE ID 798
Summary
CVE-2023-37755 is a vulnerability affecting i-doit pro 25 and below, as well as i-doit open 25 and below. The issue lies in the use of insecure default administrator credentials, which are not changed during installation or setup. No warning or prompt is given to users to modify these credentials, leaving them susceptible to unauthenticated attacks. Successful exploitation of this vulnerability grants attackers Administrator privileges, enabling them to execute arbitrary system operations or cause a Denial of Service (DoS).
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- I-doit
Affected Vendors
- Idoit