CVE-2026-42251

Use of hard-coded credentials in KS-SOMED allowed an unauthorized attacker access to FTP server that hosted the application's update packages. The attacker with these credentials could upload a malicious update file, which then may have been distributed and installed on client machines as a legitimate update. This issue affects KS-SOMED with modules: KSPLUPDFTP.exe up to 30.00.00.056 and ANEKSKLIENT.EXE up to 29.00.02.026 Beside removing the hard-coded credentials from the code and changing the update process, access granted by previously exposed credentials was limited to read-only.
CVSS

No CVSS.

Configurations

No configuration.

History

22 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) El uso de credenciales codificadas en KS-SOMED permitió a un atacante no autorizado el acceso al servidor FTP que alojaba los paquetes de actualización de la aplicación. El atacante con estas credenciales podría cargar un archivo de actualización malicioso, el cual luego podría haber sido distribuido e instalado en máquinas cliente como una actualización legítima. Este problema afecta a KS-SOMED con los módulos: KSPLUPDFTP.exe hasta la versión 30.00.00.056 y ANEKSKLIENT.EXE hasta la versión 29.00.02.026 Además de eliminar las credenciales codificadas del código y cambiar el proceso de actualización, el acceso otorgado por credenciales previamente expuestas se limitó a solo lectura.

01 Jun 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-01 15:16

Updated : 2026-07-22 07:10


NVD link : CVE-2026-42251

Mitre link : CVE-2026-42251

CVE.ORG link : CVE-2026-42251


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials