PT-2026-5607 · Samsung · Magicinfo 9 Server

CVE-2026-25202

·

Publicado

2026-02-02

·

Atualizado

2026-03-10

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions MagicINFO 9 Server versions prior to 21.1090.1
Description The database account and password are hardcoded, which allows login with the account to manipulate the database. This compromises the integrity and confidentiality of the database.
Recommendations Update MagicINFO 9 Server to version 21.1090.1 or later.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-01068
CVE-2026-25202

Produtos afetados

Magicinfo 9 Server