CVE Vulnerabilities

CVE-2025-49182

Inclusion of Sensitive Information in Source Code

Published: Jun 12, 2025 | Modified: Jan 29, 2026
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Files in the source code contain login credentials for the admin user and the property configuration password, allowing an attacker to get full access to the application.

Weakness

Source code on a web server or repository often contains sensitive information and should generally not be accessible to users.

Affected Software

NameVendorStart VersionEnd Version
Media_serverSick*1.5 (excluding)

Potential Mitigations

References