Creacast Creabox Manager contains a critical authentication flaw that allows an attacker to bypass login validation. The system grants access when the username is creabox and the password begins with the string creacast, regardless of what follows.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 22 Sep 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-287 CWE-798 |
|
Metrics |
cvssV3_1
|
Mon, 22 Sep 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Creacast Creabox Manager contains a critical authentication flaw that allows an attacker to bypass login validation. The system grants access when the username is creabox and the password begins with the string creacast, regardless of what follows. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-09-22T17:29:10.145Z
Reserved: 2025-08-17T00:00:00.000Z
Link: CVE-2025-57434

Updated: 2025-09-22T17:28:32.586Z

Status : Awaiting Analysis
Published: 2025-09-22T17:16:08.423
Modified: 2025-09-22T21:22:33.590
Link: CVE-2025-57434

No data.

No data.