5VTechnologies Blue Angel Software Suite Hardcoded Credentials
50Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck.
ssvc Actcvss 9.3epss 0.6%
from disclosure to weapon
Published on NVDJun 24
VulnCheckJun 23
exploitation probability
0.6%top 52% of all CVEs
observed exploitation
yesVulnCheck
A hardcoded credential vulnerability exists in the Blue Angel Software Suite deployed on embedded Linux systems. The application contains multiple known default and hardcoded user accounts that are not disclosed in public documentation. These accounts allow unauthenticated or low-privilege attackers to gain administrative access to the device’s web interface. Exploitation evidence was observed by the Shadowserver Foundation on 2025-01-26 UTC.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
5VTechnologies · Blue Angel Software Suite