CISA Known Exploited Vulnerability

CVE-2020-8657

EyesOfNetwork · EyesOfNetwork

EyesOfNetwork Use of Hard-Coded Credentials Vulnerability

Date added
BOD 22-01 due date
CWE CWE-798
Ransomware Unknown

CISA description

EyesOfNetwork contains a use of hard-coded credentials vulnerability, as it uses the same API key by default. Exploitation allows an attacker to calculate or guess the admin access token.

Required action

Apply updates per vendor instructions.