CVE 9.3 CRITICAL

Glory RBG-100 Recycler System Hard-coded OS Credentials_CVE-2026-23647

9.3 / 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

Glory RBG-100 recycler systems using the ISPK-08 software component contain hard-coded operating system credentials that allow remote authentication to the underlying Linux system. Multiple local user accounts, including accounts with administrative privileges, were found to have fixed, embedded passwords. An attacker with network access to exposed services such as SSH may authenticate using these credentials and gain unauthorized access to the system. Successful exploitation allows remote access with elevated privileges and may result in full system compromise.

AI Analysis

Hard-coded operating system credentials in Glory RBG-100 recycler systems allow remote authentication and unauthorized access with elevated privileges

Basic Information

ID CVE-2026-23647
Source VulnCheck
Published Feb 17, 2026 at 16:30

Affected Product

Vendor Glory Global Solutions
Product RBG-100
Affected Versions Glory Global Solutions RBG-100 0

CWE Classification

AI Assessment

AI Score 9.3 / 10
AI Severity Critical
Vendor Glory Global Solutions
Product RBG-100 recycler system

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.