VYPR
High severity8.0NVD Advisory· Published Mar 10, 2025· Updated Apr 15, 2026

CVE-2025-27255

CVE-2025-27255

Description

Use of Hard-coded Credentials vulnerability in GE Vernova EnerVista UR Setup allows Privilege Escalation. The local user database is encrypted using an hardcoded password retrievable by an attacker analyzing the application code.

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.