SmartIT Desktop Manager developed by Lightstar has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote attackers can obtain the SFTP service credentials of the SmartIT Agent application from the source code, thereby browsing the file system of the user's host.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-04 03:17
Updated : 2026-09-08 19:09
NVD link : CVE-2026-85149
Mitre link : CVE-2026-85149
CVE.ORG link : CVE-2026-85149
JSON object : View
Products Affected
No product.
CWE
CWE-798
Use of Hard-coded Credentials
