Hard-Coded Credential Vulnerability in SolarWinds N-Central Software
CVE-2020-25620
7.8HIGH
What is CVE-2020-25620?
A security issue has been identified in SolarWinds N-Central version 12.3.0.670, where hard-coded credentials for local user accounts (specifically support@n-able.com and nableadmin@n-able.com) are present by default. This flaw enables unauthorized access to the N-Central Administrative Console (NAC) and the standard web interface, posing a risk to the integrity of network management systems.