CVE-2017-16748
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 4.1%
exploitation probability
4.1%top 10% of all CVEs
observed exploitation
nono source reports it
An attacker can log into the local Niagara platform (Niagara AX Framework Versions 3.8 and prior or Niagara 4 Framework Versions 4.4 and prior) using a disabled account name and a blank password, granting the attacker administrator access to the Niagara system.
Affected products
ICS-CERT · Niagara AX Framework and Niagara 4 Framework