Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7fvm-m3gq-pf2p

Опубликовано: 31 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.3
CVSS3: 6.5

Описание

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain hardcoded credentials embedded in server binaries that cannot be modified through normal device operations. Attackers can leverage these static credentials to gain unauthorized access to the device across Linux and Windows distributions without requiring user interaction.

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain hardcoded credentials embedded in server binaries that cannot be modified through normal device operations. Attackers can leverage these static credentials to gain unauthorized access to the device across Linux and Windows distributions without requiring user interaction.

EPSS

Процентиль: 42%
0.00203
Низкий

9.3 Critical

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
nvd
около 1 месяца назад

SOUND4 IMPACT/FIRST/PULSE/Eco versions 2.x and below contain hardcoded credentials embedded in server binaries that cannot be modified through normal device operations. Attackers can leverage these static credentials to gain unauthorized access to the device across Linux and Windows distributions without requiring user interaction.

EPSS

Процентиль: 42%
0.00203
Низкий

9.3 Critical

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-798