Unrated severityNVD Advisory· Published Aug 4, 2025· Updated Aug 5, 2025
elunez eladmin Druid application-prod.yml default credentials
CVE-2025-8530
Description
A vulnerability, which was classified as problematic, has been found in elunez eladmin up to 2.7. Affected by this issue is some unknown functionality of the file eladmin-system\src\main\resources\config\application-prod.yml of the component Druid. The manipulation of the argument login-username/login-password leads to use of default credentials. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Affected products
2- elunez/eladminv5Range: 2.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- github.com/elunez/eladmin/issues/883mitreexploitissue-tracking
- vuldb.commitrethird-party-advisory
- github.com/elunez/eladmin/issues/883mitreissue-tracking
- vuldb.commitresignaturepermissions-required
- vuldb.commitrevdb-entrytechnical-description
News mentions
0No linked articles in our index yet.