CVE-2026-74891
EUVD-2026-6011017.08.2026, 11:16
openssl_encrypt versions before 1.4.0 contain hardcoded database credentials in standalone server configuration files. Attackers on the same network can access PostgreSQL databases using well-known default credentials to retrieve sensitive data.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| jahlives | openssl_encrypt | 𝑥 < 1.4.0 |
𝑥
= Vulnerable software versions