CyberRota Analysis
AI-GeneratedA vulnerability exists in the provisioning script for HIPASE-250 engineering workstations, which uses a hard-coded x11vnc password applicable to all instances. This flaw allows an attacker with adjacent-network access to exploit the fixed credential, potentially gaining unauthorized VNC access to the workstations. Organizations using HIPASE-250 should prioritize addressing this vulnerability to mitigate the risk of unauthorized access.
Original NVD Description
A provisioning script used when installing HIPASE-250 (formerly 250 SCALA) engineering workstations sets a fixed, hard-coded x11vnc password. Because the same credential is applied to every workstation provisioned this way, an attacker with adjacent-network access who knows the password can gain VNC access to affected workstations.