CVE Database
/

CVE-2017-16748

Back to search

CVE-2017-16748

Published: Aug 20, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework Versions 4.4 and prior) using a disabled account name and a blank password, granting the attacker administrator access to the Niagara system.

VendorProductVersions

ICS-CERT

Niagara AX Framework and Niagara 4 Framework

affected
Niagara AX Framework Versions 3.8 and prior and Niagara 4 Framework Versions 4.4 and prior

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now