CVE-2025-46273: Planet Technology Network Products Use of Hard-coded Credentials
UNI-NMS-Lite uses hard-coded credentials that could allow an unauthenticated attacker to gain administrative privileges to all UNI-NMS managed devices.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46273?
CVE-2025-46273 has a high severity rating due to the use of hard-coded credentials that allow unauthenticated attackers to gain administrative access.
How do I fix CVE-2025-46273?
To fix CVE-2025-46273, update to the latest versions of the affected Planet Technology products that address the hard-coded credential issue.
Which products are affected by CVE-2025-46273?
CVE-2025-46273 affects UNI-NMS-Lite versions 1.0b211018 and prior, NMS-500, NMS-1000V, WGS-804HPT-V2 versions 2.305b250121 and prior, and WGS-4215-8T2S versions 1.305b241115 and prior.
What are the risks associated with CVE-2025-46273?
The risks associated with CVE-2025-46273 include unauthorized access to network devices, which may lead to data breaches or system manipulation.
Is CVE-2025-46273 actively exploited?
There is currently no public information indicating that CVE-2025-46273 is being actively exploited in the wild.