CVE 8.8 HIGH

Usage of Hardcoded FTP Credentials EfficientLab WorkExaminer Professional_CVE-2025-10639

8.8 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304. An attacker with network access to this port can use weak hardcoded credentials to login to the FTP server and modify or read data, log files and gain remote code execution as NT Authority\SYSTEM on the server by exchanging accessible service binaries in the WorkExaminer installation directory (e.g. "C:\Program File (x86)\Work Examiner Professional Server").

AI Analysis

Weak hardcoded FTP credentials allow attackers to gain remote code execution as NT Authority\SYSTEM on the server.

Basic Information

ID CVE-2025-10639
Source SEC-VLab
Published Oct 21, 2025 at 11:36
Modified Oct 22, 2025 at 19:01

Affected Product

Vendor EfficientLab
Product WorkExaminer Professional
Version <= 4.0.0.52001
Affected Versions EfficientLab WorkExaminer Professional <= 4.0.0.52001

CWE Classification

AI Assessment

AI Score 8.8 / 10
AI Severity High
Vendor EfficientLab
Product WorkExaminer Professional
Version <= 4.0.0.52001

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.