CVE-2015-7856

critical
Published 2015-10-16 · Modified 2026-05-06
CVSS v3
CVSS v2
10.0
VIR risk
10.0

Description

OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: cve@mitre.org — http://www.opennms.org/wiki/CVE-2015-0975

Application impact

VendorProductVersionsFixed
opennmsopennms-

References

CWEs

CWE-255

Verify integrity in audit chain (admin only). AS-IS.