CVE-2018-7047

An issue was discovered in the MBeans Server in Wowza Streaming Engine before 4.7.1. The file system may be read and written to via JMX using the default JMX credentials (remote code execution may be possible as well).
Configurations

Configuration 1 (hide)

cpe:2.3:a:wowza:streaming_engine:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:11

Type Values Removed Values Added
References () https://raw.githubusercontent.com/WowzaMediaSystems/public_cve/main/wowza-streaming-engine/CVE-2018-7047.txt - () https://raw.githubusercontent.com/WowzaMediaSystems/public_cve/main/wowza-streaming-engine/CVE-2018-7047.txt -
References () https://www.wowza.com/docs/wowza-streaming-engine-4-7-1-release-notes - Release Notes, Vendor Advisory () https://www.wowza.com/docs/wowza-streaming-engine-4-7-1-release-notes - Release Notes, Vendor Advisory

Information

Published : 2018-03-01 21:29

Updated : 2024-11-21 04:11


NVD link : CVE-2018-7047

Mitre link : CVE-2018-7047

CVE.ORG link : CVE-2018-7047


JSON object : View

Products Affected

wowza

  • streaming_engine
CWE
CWE-798

Use of Hard-coded Credentials