Nexpose Vulnerability Database
Search Hints
- Try searching for a product or vendor.
- Only vulnerabilities that match all search terms will be returned.
- Enclose search terms in double quotes for an exact search.
- For CVE searches, only enter the CVE-YYYY-XXXX code.
Get Nexpose now
Search vulnerabilities with Rapid7's vulnerability management solution
FREE DOWNLOADDefault ORACLE account RMAN available
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| Severe (5) | 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P) | Jan 1, 1992 | Nov 1, 2004 | Sep 16, 2010 |
Description:
ORACLE creates a default account with the user ID "RMAN" and password "RMAN". It is best practice to remove default accounts, if possible. For accounts required by the system, the default password should be changed. This account grants user level access to the system.
Vulnerability Management
Get your solution now
Solution:
Secure the ORACLE account
Remove or disable the account if it is not critical for the system to function. Otherwise, the password should be changed to a non-default value.
Download Nexpose
Download our vulnerability management solution, Nexpose, for free today. Scan 100% of your infrastructure for vulnerabilities, understand your risk exposure, compare and prioritize your vulnerabilities and verify that they are remediated.