### [CVE-2009-4463](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4463) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Intellicom NetBiter WebSCADA devices use default passwords for the HICP network configuration service, which makes it easier for remote attackers to modify network settings and cause a denial of service. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation. NOTE: this issue was originally reported to be hard-coded passwords, not default passwords. ### POC #### Reference - http://blog.48bits.com/?p=781 - http://blog.48bits.com/?p=781 #### Github - https://github.com/MDudek-ICS/AntiWeb_testing-Suite