RULE(RULE ID:321959)

Rule General Information
Release Date: 2019-06-25
Rule Name: GE MDS PulseNET Support Account Remote Code Execution Vulnerability (CVE-2015-6456)
Severity:
CVE ID:
Rule Protection Details
Description: GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 have hardcoded credentials for a support account, which allows remote attackers to obtain administrative access, and consequently execute arbitrary code, by leveraging knowledge of the password.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: http://www.gedigitalenergy.com/app/resources.aspx?prod=pulsenet&type=9
ZeroDayInitiative:ZDI-15-440
https://ics-cert.us-cert.gov/advisories/ICSA-15-258-03
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.gedigitalenergy.com/app/resources.aspx?prod=pulsenet&type;=9