←Back to Bulletins
Weak Password in Scheduled Task Framework
Summary :
Weak administrator passwords in the scheduled task framework introduced security risks.
CVSS (Base Score):
9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Attack Conditions:
Attackers may obtain some user credentials via brute force or leaked passwords, and then access the scheduled task administration console.
Risk:
Weak passwords may cause unauthorized access to the task management system and affect scheduling and system stability.
Impact Scope:
This vulnerability affects scheduled task instances using weak passwords.
Remediation Steps:
Weak credentials for operations accounts have been remediated by enforcing strong passwords, and Internet-facing access to the relevant service ports has been restricted.