Default SSH Private Key Vulnerability in Digital Alert Systems DASDEC and Monroe Electronics R189 One-Net EAS Devices

Default SSH Private Key Vulnerability in Digital Alert Systems DASDEC and Monroe Electronics R189 One-Net EAS Devices

CVE-2013-0137 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

The default configuration of the Digital Alert Systems DASDEC EAS device before 2.0-2 and the Monroe Electronics R189 One-Net EAS device before 2.0-2 contains a known SSH private key, which makes it easier for remote attackers to obtain root access, and spoof alerts, via an SSH session.

Learn more about our Web Application Penetration Testing UK.