Cobbler before 1.6.1 does not properly determine whether an installation has the default password, which makes it easier for attackers to obtain access by using this password.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/64734http://people.fedoraproject.org/~shenson/cobbler/cobbler-2.0.8.tar.gz