S4E just found a high top 10 tcp port service scan
critical·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2018-9161 Scanner

CVE-2018-9161 scanner - Hard-Coded Credentials vulnerability in Prisma Industriale Checkweigher PrismaWEB

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3.3k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2018-9161
9.8
CVSS

Prisma Industriale Checkweigher PrismaWEB 1.21 allows remote attackers to discover the hardcoded prisma password for the prismaweb account by reading user/scripts/login_par.js.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

Prisma Industriale Checkweigher PrismaWEB is a product designed for industries to help manage the weighing process of their products. It is a tool used for quality control purposes to ensure that products meet the required weight standards. PrismaWEB 1.21 is a web-based interface that allows users to access and control the checkweigher remotely through a computer or mobile device, making it very convenient for industries.

However, the Prisma Industriale Checkweigher PrismaWEB is not immune to vulnerabilities. CVE-2018-9161 is a vulnerability that can be detected in this product. This particular vulnerability is caused by the fact that the password for the prismaweb account is hardcoded and can be discovered by remote attackers who read user/scripts/login_par.js. 

When exploited, this vulnerability can lead to unauthorized control of the checkweigher, which can result in inaccurate weight measurements and ultimately affect the quality of the products. The potential consequences of this vulnerability are serious, as it could significantly impact a company's reputation and financial health if not addressed in a timely manner.

In conclusion, it is important for industries to be aware of the vulnerabilities that exist in their digital assets. With the pro features of the s4e.io platform, users can easily and quickly learn about vulnerabilities in their digital assets and take the necessary steps to protect against them. By being proactive and vigilant, companies can ensure the security and quality of their products and maintain the trust of their customers.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users of Prisma Industriale Checkweigher PrismaWEB should take the following precautions:

  • Change the default password of the prismaweb account to a strong, unique password.
  • Keep the web interface up to date with all security patches and updates.
  • Regularly monitor logs and network traffic for suspicious activity.
  • Restrict access to the checkweigher to only authorized personnel.
  • Use two-factor authentication to add an extra layer of security to the web interface.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2018-9161 scanner - Hard-Coded Credentials vulnerability in Prisma Industriale Checkweigher PrismaWEB S4E