CVE-2026-28776
International Datacasting Corporation (IDC) SFX Series SuperFlex SatelliteReceiver contains hardcoded credentials for the `monitor` account. A remote unauthenticated attacker can use these trivial, undocumented credentials to access the system via SSH. While initially dropped into a restricted shell, the attacker can trivially break out to achieve standard shell functionality.
Vendor
Product
CWE
Yayın Tarihi
2026-03-04 08:16:13
Güncelleme
2026-03-17 16:51:46
Source Identifier
b7efe717-a805-47cf-8e9a-921fca0ce0ce
KEV Date Added
-