Glory RBG-100 Recycler System Hard-coded OS Credentials Allowing Remote Authentication and Privileged Access
Vulnerability
A vulnerability exists in Glory RBG-100 recycler systems that use the ISPK-08 software component. These systems contain hard-coded operating system credentials that enable remote authentication to the underlying Linux system. Several local user accounts, including those with administrative privileges, have fixed, embedded passwords. An attacker with network access to exposed services like SSH could use these credentials to gain unauthorized access to the system. Exploitation of this vulnerability allows remote access with elevated privileges, potentially leading to full system compromise.
Impact
Exploitation of this vulnerability could result in unauthorized access to the system with elevated privileges, allowing for full system compromise.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
