CVE-2025-1029
Hard-coded Credentials in SoliClub Allow Sensitive Data Exposure
Publication date: 2025-12-18
Last updated on: 2025-12-18
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| utarit_information_services_inc | soliclub | 5.2.4 |
| utarit_information_services_inc | soliclub | 5.3.7 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-798 | The product contains hard-coded credentials, such as a password or cryptographic key. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is a Use of Hard-coded Credentials issue in Utarit Information Services Inc. SoliClub software versions from 5.2.4 before 5.3.7. It allows an attacker to read sensitive constants within an executable, potentially exposing confidential information embedded in the software.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized disclosure of sensitive information due to the exposure of hard-coded credentials or constants within the executable. This can allow attackers to gain access to systems or data that should be protected, increasing the risk of security breaches.