← العودة للجدول
CVE-2026-41930
CVE-2026-41930 — VulnCheck: Vvveb before version 1.0.8.2 contains a hard-coded credentials vulnera
📅 2026-05-06
🔴 Critical 🔥 No VulnCheck Exploit Containers CVSS 9.8

📋 الوصف الكامل

Vvveb before version 1.0.8.2 contains a hard-coded credentials vulnerability in its docker-compose-apache.yaml configuration that allows unauthenticated attackers to access the bundled phpMyAdmin container with pre-configured database credentials. Attackers can connect to the phpMyAdmin port to gain unrestricted read and write access to the entire Vvveb database, including administrator password h

💻 الأنظمة المتأثرة

Apache HTTP Server | Docker

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-41930

📡 المصدر

VulnCheck

✅ الحلول والتخفيف

Update to v1.0.8

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←