Full title: Ceragon FibeAir IP-10 SSH Private Key Exposure Exploit Category: remote exploits Platform: unix This Metasploit module exploits the fact that Ceragon ships a public/private key pair on FibeAir IP-10 devices that allows passwordless authentication to any other IP-10 device. Since the key is easily retrievable, an attacker can use it to gain unauthorized remote access as the "mateidu" user. # 0day.today @ http://0day.today/