Functionality Not Properly Constrained by ACLs. This issue affects
Avantra: before 25.3.0.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 16 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Syslink Software Ag
Syslink Software Ag avantra |
|
| Vendors & Products |
Syslink Software Ag
Syslink Software Ag avantra |
Fri, 13 Mar 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of Hard-coded Credentials vulnerability in Avnatra Avantra allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Avantra: before 25.3.0. | Use of Hard-coded Credentials vulnerability in Avantra allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Avantra: before 25.3.0. |
Fri, 13 Mar 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Use of Hard-coded Credentials vulnerability in Avnatra Avantra allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Avantra: before 25.3.0. | |
| Title | Legacy built-in user account | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2026-03-13T16:05:47.203Z
Reserved: 2026-03-10T10:16:02.391Z
Link: CVE-2026-3873
Updated: 2026-03-13T16:05:43.335Z
Status : Awaiting Analysis
Published: 2026-03-13T19:55:10.810
Modified: 2026-03-16T14:53:46.157
Link: CVE-2026-3873
No data.
OpenCVE Enrichment
Updated: 2026-03-23T09:59:42Z