Weak Default Administrative Credentials in ECOA BAS Controller: A Gateway to Full System Control

Weak Default Administrative Credentials in ECOA BAS Controller: A Gateway to Full System Control

CVE-2021-41296 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

ECOA BAS controller uses weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control of the system.

Learn more about our Web Application Penetration Testing UK.