Use of Hard-coded Password in ExactaMix EM2400 and ExactaMix EM1200 - CVE-2020-12012
Published: June 19, 2020
ExactaMix EM2400
ExactaMix EM1200
Baxter
Description
The vulnerability allows a local attacker to compromise the target system.
The vulnerability exists due to the affected software has hard-coded administrative account credentials for the ExactaMix application. An attacker with physical access can use these credentials to gain unauthorized access to view/update system configuration or data.