Hard-coded credentials are used by the 
CyberPower PowerPanel

platform to authenticate to the
database, other services, and the cloud. This could result in an
attacker gaining access to services with the privileges of a Powerpanel
business application.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-34461 Hard-coded credentials are used by the  CyberPower PowerPanel platform to authenticate to the database, other services, and the cloud. This could result in an attacker gaining access to services with the privileges of a Powerpanel business application.
Fixes

Solution

CyberPower has released a new version (v4.10.1 or later version) of PowerPanel business that fixes these vulnerabilities. https://www.cyberpower.com/global/en/product/sku/powerpanel_business_for_windows#downloads


Workaround

No workaround given by the vendor.

History

Wed, 30 Jul 2025 00:30:00 +0000

Type Values Removed Values Added
First Time appeared Cyberpower powerpanel
CPEs cpe:2.3:a:cyberpower:powerpanel:*:*:*:*:business:windows:*:*
Vendors & Products Cyberpower powerpanel

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-02T02:06:43.251Z

Reserved: 2024-04-29T16:47:22.358Z

Link: CVE-2024-32053

cve-icon Vulnrichment

Updated: 2024-08-02T02:06:43.251Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-15T20:15:12.443

Modified: 2025-07-30T00:15:59.410

Link: CVE-2024-32053

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T23:05:51Z