CVE-2026-25202
The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo
The database account and password are hardcoded, allowing login with the account to manipulate the database in MagicInfo9 Server.This issue affects MagicINFO 9 Server: less than 21.1090.1.
CRITICAL · CVSS 9.8
EPSS 0.00023
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0