ZeroHour

CVE-2025-27255

CVSS 3.1
8.0 high
EPSS
<1%p4
Published
()
Modified
Description

Use of Hard-coded Credentials vulnerability in GE Vernova EnerVista UR Setup allows Privilege Escalation. The local user database is encrypted using an hardcoded password retrievable by an attacker analyzing the application code.

Weakness
CWE-798
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H

In the news

No ingested article mentions this CVE yet.