Armatura One 的数据库初始化例程在创建数据库超级用户账户时,会分配一个固定的、由厂商预设的密码,而不是为每次安装生成唯一的密码。任何能够访问服务器操作系统并知晓该固定密码的人,在未修改此密码的部署环境中,都可以以数据库超级用户的身份进行认证登录。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Armatura LLC | Armatura One | 0 ~ 4.7.2 | - |
|
| Armatura LLC | Armatura One (USA) | 0 ~ 4.6.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94591 | 8.4 HIGH | Armatura LLC Armatura One Use of Hard-coded Cryptographic Key |
| CVE-2026-94593 | 7.8 HIGH | Armatura LLC Armatura One Insertion of Sensitive Information into Log File |
| CVE-2026-94594 | 4.0 MEDIUM | Armatura LLC Armatura One Insertion of Sensitive Information into Log File |
No comments yet