CVE-2025-67418: Critical severity ClipBucket ClipBucket vulnerability
ClipBucket 5.5.2 is affected by an improper access control issue where the product is shipped or deployed with hardcoded default administrative credentials. An unauthenticated remote attacker can log in to the administrative panel using these default credentials, resulting in full administrative control of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-67418?
CVE-2025-67418 is a high severity vulnerability due to the presence of hardcoded default administrative credentials.
How do I fix CVE-2025-67418?
To fix CVE-2025-67418, change the default administrative credentials immediately after deployment.
Who is affected by CVE-2025-67418?
CVE-2025-67418 affects all installations of ClipBucket version 5.5.2 and earlier that have not changed the default admin credentials.
What are the risks associated with CVE-2025-67418?
The risks include unauthorized access to the administrative panel, allowing attackers to take full control of the system.
Can CVE-2025-67418 be exploited remotely?
Yes, an unauthenticated remote attacker can easily exploit CVE-2025-67418 using the hardcoded default credentials.