Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.103746
Category:Default Accounts
Title:HP D2D/StorOnce Storage Unit Backdoor (SSH)
Summary:HP D2D/StorOnce Storage Units are prone to a security-bypass; vulnerability.
Description:Summary:
HP D2D/StorOnce Storage Units are prone to a security-bypass
vulnerability.

Vulnerability Insight:
The HP D2D/StorOnce Storage Units contains a backdoor. SSH
access is all that's required to remotely compromise HP StoreOnce backup systems. Entering the
user name 'HPSupport' and the password 'badg3r5' causes the system to open an undocumented
administrator account.

Solution:
Disable SSH access or disallow remote SSH access from outside
your network.

CVSS Score:
7.7

CVSS Vector:
AV:A/AC:L/Au:S/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2013-2342
HPdes Security Advisory: HPSBST02890
https://h20564.www2.hp.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c03813919
HPdes Security Advisory: SSRT101216
http://www.lolware.net/hpstorage.html
CopyrightCopyright (C) 2013 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.