CVE-2023-39808
Critical · CVSS 9.8N.V.K.INTER CO., LTD. (NVK) iBSG — Hardcoded Credentials (Root Password) via SSH
- CVSS
- 9.8
- nvd
- EPSS
- 0.53%
- 41th pct
- KEV
- No
- Class
- other
- CWE-798
Description
N.V.K.INTER CO., LTD. (NVK) iBSG v3.5 was discovered to contain a hardcoded root password that allows attackers to login with root privileges via the SSH service. The cleartext password corresponding to the $1$4Tmm01jl$7HRvcW.bz7uGmX9hiQWvR hash was not determined by the vulnerability discoverer.
Search profile — drives PoC discovery
Symbols $1$4Tmm01jl$7HRvcW.bz7uGmX9hiQWvRiBSGrootSSHhardcoded passwordCWE-798
Keywords CVE-2023-39808iBSG v3.5NVK hardcoded root passwordiBSG SSH hardcoded credentialsNVK INTER iBSG exploitiBSG root loginhardcoded root hash iBSGmaride iBSG
Versions: v3.5
References
Status: enriched · ingested 2026-07-05T06:00:39.000Z · profiled 2026-07-05T18:30:39.000Z