#VU45063 Credentials management in WebDefend - CVE-2011-0756
Published: May 5, 2011 / Updated: August 11, 2020
WebDefend
Trustwave
Description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The application server in Trustwave WebDefend Enterprise before 5.0 uses hardcoded console credentials, which makes it easier for remote attackers to read security-event data by using the remote console GUI to connect to the management port.