Hardcoded Credentials Vulnerability in iRM-IEI Remote Management by IEI Integration Corp
CVE-2026-11849

9.3CRITICAL

Key Information:

Vendor
CVE Published:
12 June 2026

What is CVE-2026-11849?

The iRM-IEI Remote Management by IEI Integration Corp contains a vulnerability due to hardcoded credentials, which can be exploited by unauthenticated attackers. This flaw allows malicious actors to gain unauthorized administrative privileges on the database, significantly compromising the security posture of the system. Organizations utilizing this product should take immediate action to mitigate the risks associated with this vulnerability.

Affected Version(s)

iRM-TSi410X 0 < 1.4.19

References

CVSS V4

Score:
9.3
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.