Description
Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 use default credentials admin/admin and moderator/moderator for the web interface. An unauthenticated, remote attacker can use these credentials to gain privileged access to the device.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-13546 | Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 use default credentials admin/admin and moderator/moderator for the web interface. An unauthenticated, remote attacker can use these credentials to gain privileged access to the device. |
References
| Link | Providers |
|---|---|
| https://www.tenable.com/security/research/tra-2019-20 |
|
History
No history.
Status: PUBLISHED
Assigner: tenable
Published:
Updated: 2024-08-04T19:26:27.803Z
Reserved: 2019-01-03T00:00:00.000Z
Link: CVE-2019-3939
No data.
Status : Modified
Published: 2019-04-30T21:29:01.307
Modified: 2024-11-21T04:42:54.413
Link: CVE-2019-3939
No data.
OpenCVE Enrichment
No data.
EUVD