ZeroHour

CVE-2025-67418

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p41
Published
()
Modified
Description

ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default administrative credentials. An unauthenticated remote attacker can log in to the administrative panel using these default credentials, resulting in full administrative control of the application.

Vendors
oxygenz
Products
clipbucket
Weakness
CWE-798
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.