8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Description
The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304. An attacker with network access to this port can use weak hardcoded credentials to login to the FTP server and modify or read data, log files and gain remote code execution as NT Authority\SYSTEM on the server by exchanging accessible service binaries in the WorkExaminer installation directory (e.g. "C:\Program File (x86)\Work Examiner Professional Server").
AI Analysis
Weak hardcoded FTP credentials allow attackers to gain remote code execution as NT Authority\SYSTEM on the server.
Basic Information
ID
CVE-2025-10639
Source
SEC-VLab
Published
Oct 21, 2025 at 11:36
Modified
Oct 22, 2025 at 19:01
Affected Product
Vendor
EfficientLab
Product
WorkExaminer Professional
Version
<= 4.0.0.52001
Affected Versions
EfficientLab WorkExaminer Professional <= 4.0.0.52001
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
EfficientLab
Product
WorkExaminer Professional
Version
<= 4.0.0.52001