Back to Database
Status published
Critical
CVE-2025-46274
Planet Technology Network Products Use of Hard-coded Credentials
Vulnerability Description
UNI-NMS-Lite uses hard-coded credentials that could allow an unauthenticated attacker to read, manipulate and create entries in the managed database.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-46274
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Kev Breen of Immersive reported these vulnerabilities to CISA.
More from Planet Technology
View All →CVE-2025-9972
Planet Technology|Industrial Cellular Gateway - OS Command Injection
Critical
9.3
CVE-2025-9971
Planet Technology|Industrial Cellular Gateway - Missing Authentication
Critical
9.3
CVE-2025-46275
Planet Technology Network Products Missing Authentication for Critical Function
Critical
9.3
CVE-2025-46273
Planet Technology Network Products Use of Hard-coded Credentials
Critical
9.3
CVE-2025-46272
Planet Technology Network Products OS Command Injection
Critical
9.3
Affected Vendor
Planet Technology
View all reports →Affected Software
UNI-NMS-Lite
Vulnerable Versions:
0
Timeline
Official Publish:
April 24th, 2025
Last Modified:
April 25th, 2025
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H