APC’s hardware-based network management cards could be compromised by non-privileged users via Telnet or the local serial port using a static factory password.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32719/sa2988.txt
Source: https://packetstormsecurity.com/files/32719/Secunia-Security-Advisory-2988.html