CVE-2025-34034

A hardcoded credential vulnerability exists in the Blue Angel Software Suite deployed on embedded Linux systems. The application contains multiple known default and hardcoded user accounts that are not disclosed in public documentation. These accounts allow unauthenticated or low-privilege attackers to gain administrative access to the device’s web interface.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:5vtechnologies:blue_angel_software_suite:*:*:*:*:*:*:*:*

History

09 Jul 2025, 19:09

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
References () https://www.exploit-db.com/exploits/46792 - () https://www.exploit-db.com/exploits/46792 - Exploit, Third Party Advisory
References () https://vulncheck.com/advisories/5vtechnologies-blue-angel-hardcoded-credentials - () https://vulncheck.com/advisories/5vtechnologies-blue-angel-hardcoded-credentials - Third Party Advisory
First Time 5vtechnologies blue Angel Software Suite
5vtechnologies
CPE cpe:2.3:a:5vtechnologies:blue_angel_software_suite:*:*:*:*:*:*:*:*

24 Jun 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-24 01:15

Updated : 2025-07-09 19:09


NVD link : CVE-2025-34034

Mitre link : CVE-2025-34034


JSON object : View

Products Affected

5vtechnologies

  • blue_angel_software_suite
CWE

No CWE.