CVE-2025-6077

CRITICAL

Partner Software and Partner Web 4.32-4.32.2 - Use of Weak Credentials

Title source: llm
STIX 2.1

Description

Partner Software's Partner Software Product and corresponding Partner Web application use the same default username and password for the administrator account across all versions.

References (3)

Core 3
Core References
Third Party Advisory, US Government Resource
https://kb.cert.org/vuls/id/317469
Third Party Advisory, US Government Resource
https://www.kb.cert.org/vuls/id/317469

Scores

CVSS v3 9.8
EPSS 0.0075
EPSS Percentile 50.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-1391
Status published
Products (1)
Partner Software/Partner Web 4.32 - 4.32.2
Published Aug 02, 2025
Tracked Since Feb 18, 2026