📦

rapidstream

Vendor: rapidstream

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 1 Remote Access
Total CVEs 6 Total Indexed
Avg. EPSS 2.85% Exploit Prob.
Latest CVE CVE-2016-7089 Aug 24

Security Vulnerability Index

Page 1 / 1
7.8 CVSS
CVE-2016-7089
Exploit Found

WatchGuard RapidStream appliances allow local users to gain privileges and execute arbitrary commands via a crafted ifconfig command, aka ESCALATEPLOWMAN.

EPSS: 1.24%
10.0 CVSS

Format string vulnerability in the CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, allows remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in the password parameter.

EPSS: 4.28%
10.0 CVSS

The CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, does not properly close the SSH connection when a -N option is provided during authentication, which allows remote attackers to access CLI with administrator privileges.

EPSS: 2.77%
10.0 CVSS

sshd program in the Rapidstream 2.1 Beta VPN appliance has a hard-coded "rsadmin" account with a null password, which allows remote attackers to execute arbitrary commands via ssh.

EPSS: 3.12%