← Back to browse · API

CVE-2012-5862

Severity
CRITICAL
CVSS
10.0
EPSS
0.12079
Risk score
44.23
CISA KEV
No
PoC
No
Published
2012-11-23
Modified
2025-07-08
First seen
2026-08-07
Aliases
EUVD-2012-5740, GHSA-8XW2-RF2C-8V7W
Products
Sinapsi:eSolar 0 <2.0.2870_xxx_2.2.12, Sinapsi:eSolar DUO 0 <2.0.2870_xxx_2.2.12, Sinapsi:eSolar Light 0 <2.0.2870_xxx_2.2.12
Sources
euvd EUVD-2012-5740

Description

These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in the device, attackers can log into the device with administrative privileges. This could allow the attacker to have unauthorized access.

References