CVE-2012-4577: Korenix Jetport

High severity, CVSS 10.0. EPSS: 3.6% chance of exploitation in the next 30 days.

The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, which allows remote attackers to obtain administrative access via an SSH session.

Affected products

  • Korenix Jetport: version 5601 only; version 5601f only; version 5604 only; version 5604i only

Published 2012-08-21. Last modified 2026-06-16.