CVE-2017-16748
An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework
An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework Versions 4.4 and prior) using a disabled account name and a blank password, granting the attacker administrator access to the Niagara system.
CRITICAL · CVSS 9.8
EPSS 0.02678
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0