Security Advisory

CVE-2023-38379

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-07-16 00:00:00
Last updated 2024-10-30 18:10:54
Assigner mitre
State PUBLISHED

Description

The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to change the admin password via a zero-length pass0 to the webcontrol changepwd.cgi application, i.e., the entered password only needs to match the first zero characters of the saved password.