Executive brief
Avantra, an operations management platform for SAP systems, contains a vulnerability where default usernames and passwords are used. An attacker with high-level access to the underlying operating system could use these credentials to gain unauthorized access to the application's data. This could lead to the exposure of sensitive configuration information or business data managed within the platform.
Technical details
A use of default password vulnerability (CWE-1393) exists in syslink software AG Avantra on both Linux and Windows platforms. The software utilizes common or default usernames and passwords that are not automatically changed during installation. An attacker who has already obtained high-privileged local access (PR:H) to the host operating system can leverage these known credentials to authenticate to the Avantra application. This allows for unauthorized data retrieval and minor integrity impacts. The issue is resolved in Avantra version 25.3.0.
Affected products
- syslink software AG Avantra before 25.3.0
Timeline
- 2026-05-22: disclosed
- 2026-05-22: advisory