PT-2026-5607 · Samsung · Magicinfo 9 Server
CVE-2026-25202
·
Publicado
2026-02-02
·
Atualizado
2026-03-10
CVSS v2.0
10
Crítica
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
MagicINFO 9 Server versions prior to 21.1090.1
Description
The database account and password are hardcoded, which allows login with the account to manipulate the database. This compromises the integrity and confidentiality of the database.
Recommendations
Update MagicINFO 9 Server to version 21.1090.1 or later.
Correção
Using Hardcoded Credentials
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Magicinfo 9 Server