CVE-2025-51536 is a critical vulnerability affecting Austrian Archaeological Institute (AI) OpenAtlas v8.11.0, stemming from a hardcoded administrator password. This allows unauthenticated remote attackers to gain full control over affected systems with high confidentiality, integrity, and availability impacts, as reflected by its CVSS score of 9.8. While no public exploits, Metasploit modules, or Nuclei templates are currently available, and community discussion is minimal, the presence of a hardcoded credential makes it easily exploitable. Organizations using OpenAtlas v8.11.0 should prioritize remediation due to the severe risk posed.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.12.0CPE matchmatch criteria | cpe:2.3:a:craws:openatlas:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.