ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default administrative credentials. An unauthenticated remote attacker can log in to the administrative panel using these default credentials, resulting in full administrative control of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 23 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Clipbucket
Clipbucket clipbucket |
|
| Vendors & Products |
Clipbucket
Clipbucket clipbucket |
Mon, 22 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-798 | |
| Metrics |
cvssV3_1
|
Mon, 22 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default administrative credentials. An unauthenticated remote attacker can log in to the administrative panel using these default credentials, resulting in full administrative control of the application. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-22T19:53:45.499Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-67418
Updated: 2025-12-22T19:52:52.876Z
Status : Awaiting Analysis
Published: 2025-12-22T20:15:45.303
Modified: 2025-12-23T14:51:52.650
Link: CVE-2025-67418
No data.