CVE-2012-4577: Korenix Jetport
High severity, CVSS 10.0. EPSS: 3.6% chance of exploitation in the next 30 days.
The Linux firmware image on (1) Korenix Jetport 5600 series serial-device servers and (2) ORing Industrial DIN-Rail serial-device servers has a hardcoded password of "password" for the root account, which allows remote attackers to obtain administrative access via an SSH session.
Affected products
- Korenix Jetport: version 5601 only; version 5601f only; version 5604 only; version 5604i only
Published 2012-08-21. Last modified 2026-06-16.