logo

CVE-2026-11849: IRM-IEI Remote Management Hardcoded Credentials

ID: 3afd047b-b8de-5b8c-8a96-a7f3b8c4d4b4

STIX ID: report--3afd047b-b8de-5b8c-8a96-a7f3b8c4d4b4

Feed Name: CosmicBytez Labs

Threat Score
85/100

Date Published: 2026-06-13

Date Updated: 2026-06-13

...
...

**CVE-2026-11849:** A critical (CVSS 9.8) hardcoded credentials vulnerability in IEI Integration Corp's iRM-IEI Remote Management allows unauthenticated network attackers to authenticate to the underlying database with embedded, identical credentials across deployments, granting full administrative read/write/delete access; the report includes technical analysis, attack scenario, affected environments, mitigation steps (patching, network restrictions), and detection recommendations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.