Use of hard-coded, the same among all vulnerable installations SQLite credentials vulnerability in SIGNUM-NET FARA allows to read and manipulate local-stored database.This issue affects FARA: through 5.0.80.34.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://cert.pl/en/posts/2025/07/CVE-2025-4049/ |
|
| https://fara.pl/ |
|
History
Mon, 21 Jul 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 21 Jul 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of hard-coded, the same among all vulnerable installations SQLite credentials vulnerability in SIGNUM-NET FARA allows to read and manipulate local-stored database.This issue affects FARA: through 5.0.80.34. | |
| Title | Hardcoded SQLite password in FARA | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: CERT-PL
Published: 2025-07-21T07:40:33.031Z
Updated: 2025-07-21T17:41:14.461Z
Reserved: 2025-04-28T19:56:49.093Z
Link: CVE-2025-4049
Updated: 2025-07-21T17:41:10.095Z
Status : Awaiting Analysis
Published: 2025-07-21T08:15:23.910
Modified: 2025-07-22T13:06:07.260
Link: CVE-2025-4049
No data.