CNNVD-202601-4401 Information

CNNVD ID

CNNVD-202601-4401

CVE-2025-59093

  • CNNVD Published: 2026-01-26

Description (Chinese)

Dormakaba exos 9300是美国Dormakaba公司的一个出入库控制与安全管理系统。 Dormakaba exos 9300存在安全漏洞,该漏洞源于数据库密码派生自静态随机值,可能导致攻击者推导密码并获得对中央数据库的经过身份验证的访问权限。

Description (English)

Dormakaba exos 9,300 is a United States company, Dormakaba, for access control and security management. There is a security loophole in Dormakaba exos 9,300, which stems from the fact that the database password is derived from static random values, which may result in the assailants extrapolating the password and obtaining authentication access to the central database.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Dormakaba

Published

2026-01-26

Last Modified

2026-02-24

References

https://r.sec-consult.com/dkexos https://r.sec-consult.com/dormakaba https://www.dormakabagroup.com/en/security-advisories https://access.redhat.com/security/cve/cve-2025-59093

Patch

https://www.dormakabagroup.com/en/security-advisories

Share on: