← Terug naar overzicht

A Use of Hard-coded Credentials vulnerability has been identified in TÜBİTAK BİLGEM Software Technologies Research Institute's Liderahenk software. The vulnerability allows attackers to attempt authentication using common or default usernames and passwords embedded in the application. All versions of Liderahenk prior to 3.5.5 are affected. The vulnerability is classified under CWE for hard-coded credentials and enables a well-known attack vector of trying default credentials. Users are advised to upgrade to version 3.5.5 or later to remediate the issue. The vulnerability was reported via the Turkish national cybersecurity advisory portal. Hard-coded credentials represent a significant security risk as they cannot be changed by end users and may provide persistent unauthorized access if discovered.

Affected products

  • Liderahenk (before 3.5.5)

Related CVE's

  • CVE-2026-75896

Categories

  • Enterprise Applications
  • Identity & Access