CVE

Id
102050  
CVE No.
CVE-2017-5230  
Status
Candidate  
Description
The Java keystore in all versions and editions of Rapid7 Nexpose is encrypted with a static password of "r@p1d7k3y5t0r3" which is not modifiable by the user. The keystore provides storage for saved scan credentials in an otherwise secure location on disk.  
Phase
Assigned (20170109)  
Votes
None (candidate not yet proposed)  
Comments