CVE-2025-46352

The CS5000 Fire Panel is vulnerable due to a hard-coded password that runs on a VNC server and is visible as a string in the binary responsible for running VNC. This password cannot be altered, allowing anyone with knowledge of it to gain remote access to the panel. Such access could enable an attacker to operate the panel remotely, potentially putting the fire panel into a non-functional state and causing serious safety issues.
Configurations

No configuration.

History

30 May 2025, 16:31

Type Values Removed Values Added
Summary
  • (es) CS5000 Fire Panel es vulnerable debido a una contraseña codificada que se ejecuta en un servidor VNC y es visible como una cadena en el binario responsable de ejecutar VNC. Esta contraseña no se puede alterar, lo que permite que cualquiera que la conozca acceda remotamente al panel. Dicho acceso podría permitir a un atacante operar el panel remotamente, lo que podría dejarlo inoperativo y causar graves problemas de seguridad.

30 May 2025, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-30 00:15

Updated : 2025-05-30 16:31


NVD link : CVE-2025-46352

Mitre link : CVE-2025-46352

CVE.ORG link : CVE-2025-46352


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials