Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xvc8-c6gw-4q63

Опубликовано: 12 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 9.2

Описание

An example environment-configuration file for a bundled inventory-management component ships with a fixed, publicly-known administrative password. A deployment that copies this example file into active configuration without running the setup routine that regenerates credentials will expose that component's administrative interface to anyone aware of the default value.

An example environment-configuration file for a bundled inventory-management component ships with a fixed, publicly-known administrative password. A deployment that copies this example file into active configuration without running the setup routine that regenerates credentials will expose that component's administrative interface to anyone aware of the default value.

EPSS

Процентиль: 17%
0.00253
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-1392

Связанные уязвимости

nvd
9 дней назад

An example environment-configuration file for a bundled inventory-management component ships with a fixed, publicly-known administrative password. A deployment that copies this example file into active configuration without running the setup routine that regenerates credentials will expose that component's administrative interface to anyone aware of the default value.

EPSS

Процентиль: 17%
0.00253
Низкий

9.2 Critical

CVSS4

Дефекты

CWE-1392