CNNVD-202601-4387 Information

CNNVD ID

CNNVD-202601-4387

CVE-2025-59106

  • CNNVD Published: 2026-01-26

Description (Chinese)

Dormakaba Access Manager是美国Dormakaba公司的一个智能硬件控制器。 Dormakaba Access Manager存在安全漏洞,该漏洞源于Web服务器二进制文件以root权限运行,可能导致权限提升。

Description (English)

Dormakaba Access Manager is a smart hardware controller for Dormakaba in the United States. There is a security loophole in Dormakaba Access Manager, which stems from the fact that the Web server binary file operates with root privileges, which may lead to an increase in privileges.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Dormakaba

Published

2026-01-26

Last Modified

2026-02-24

References

https://r.sec-consult.com/dormakaba https://r.sec-consult.com/dkaccess https://www.dormakabagroup.com/en/security-advisories https://access.redhat.com/security/cve/cve-2025-59106

Patch

https://www.dormakabagroup.com/en/security-advisories

Share on: