Armatura One 的备份与恢复流程会将完整的数据库连接命令(包括超级用户密码)以明文形式记录在主机上的日志文件中。通过此漏洞公开的凭据可用于在访问服务器操作系统时访问数据库。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Armatura LLC | Armatura One | 0 ~ 4.7.2 | - |
|
| Armatura LLC | Armatura One (USA) | 0 ~ 4.6.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94592 | 8.4 HIGH | Armatura LLC Armatura One Use of Hard-coded Credentials |
| CVE-2026-94591 | 8.4 HIGH | Armatura LLC Armatura One Use of Hard-coded Cryptographic Key |
| CVE-2026-94594 | 4.0 MEDIUM | Armatura LLC Armatura One Insertion of Sensitive Information into Log File |
No comments yet