Unrated severityNVD Advisory· Published Dec 23, 2012· Updated Apr 29, 2026
CVE-2012-6428
CVE-2012-6428
Description
The Carlo Gavazzi EOS-Box
stores hard-coded passwords in the PHP file of the device. By using the hard-coded passwords, attackers can log into the device with administrative privileges. This could allow the attacker to have unauthorized access.
Affected products
2- cpe:2.3:h:carlosgavazzi:eos-box_photovoltaic_monitoring_system:-:*:*:*:*:*:*:*
- cpe:2.3:o:carlosgavazzi:eos-box_photovoltaic_monitoring_system_firmware:*:*:*:*:*:*:*:*Range: <=1.0.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.us-cert.gov/control_systems/pdf/ICSA-12-354-02.pdfnvdUS Government Resource
- www.cisa.gov/news-events/ics-advisories/icsa-12-354-02nvd
News mentions
0No linked articles in our index yet.