ZeroHour

CVE-2026-31928

CVSS 4.0
9.3 critical
EPSS
<1%p45
Published
()
Modified
Description

The DMP-5000 devices are shipped with a default administrative web account with weak authentication controls, which are not required to be changed during initial configuration or operation. Using these accounts provides full system access.

Vendors
daktronics
Products
dmp-5000 firmware, dmp-8000 firmware, vfc-dmp-5000 firmware
Weakness
CWE-798
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

In the news