The CS5000 Fire Panel is vulnerable due to a hard-coded password that
runs on a VNC server and is visible as a string in the binary
responsible for running VNC. This password cannot be altered, allowing
anyone with knowledge of it to gain remote access to the panel. Such
access could enable an attacker to operate the panel remotely,
potentially putting the fire panel into a non-functional state and
causing serious safety issues.
References
Configurations
No configuration.
History
30 May 2025, 16:31
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
30 May 2025, 00:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-30 00:15
Updated : 2025-05-30 16:31
NVD link : CVE-2025-46352
Mitre link : CVE-2025-46352
CVE.ORG link : CVE-2025-46352
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials