PT-2026-4752 · Unknown · Access Manager
Published
2026-01-26
·
Updated
2026-01-26
·
CVE-2025-59102
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Access Manager (affected versions not specified)
Description
The web server within Access Manager allows downloading a backup of the local database stored on the device. This database contains the entire configuration of the device, potentially exposing sensitive information to unauthorized users. The issue allows unauthenticated access to this sensitive configuration data.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Access Manager