Default Credentials Vulnerability in Partner Software Application
CVE-2025-6077

9.8CRITICAL

Key Information:

Vendor
CVE Published:
2 August 2025

What is CVE-2025-6077?

The Partner Software Product and its corresponding web application utilize a common default username and password for the administrator account across all versions. This vulnerability poses significant security risks as it may enable unauthorized access to sensitive information and system functionalities. Organizations using these products are encouraged to change default credentials immediately to enhance security and mitigate potential attacks.

Affected Version(s)

Partner Web 4.32 < 4.32.2

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.