J-Security Center

Title: Beck IPC GmbH IPC@CHIP Telnetd Known Default Password Vulnerability

Severity: CRITICAL

Description:

The IPC@Chip is a single-chip embedded webserver from Beck GmbH.

The device's inbuilt telnetd service is factory configured with a DEFAULT account having an easily-guessed password ('tel').

If the device is not properly configured during installation, including the creation of at least two new telnet accounts, this vulnerability may allow a remote user to connect to the device, make changes to its configuration and potentially interfere with its operation.

Affected Products:

  • Beck IPC GmbH IPC@CHIP Embedded-Webserver

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.