Hard-Coded Credentials Vulnerability in Avantra by Avnatra
CVE-2026-3873

7.2HIGH

Key Information:

Status
Vendor
CVE Published:
13 March 2026

What is CVE-2026-3873?

A security vulnerability within Avantra allows unauthorized access to critical functionalities due to hard-coded credentials not being properly managed. This flaw permits exploitation of access control mechanisms, thereby posing a risk to sensitive operations within versions prior to 25.3.0. Organizations using affected versions of Avantra should take immediate action to remediate this security issue.

Affected Version(s)

Avantra Windows 0 < 25.3.0

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Vicxer Inc.
.