Description
A provisioning script used when installing HIPASE-250 (formerly 250
SCALA) engineering workstations sets a fixed, hard-coded x11vnc
password. Because the same credential is applied to every workstation
provisioned this way, an attacker with adjacent-network access who
knows the password can gain VNC access to affected workstations.
Published: 2026-07-31
Score: 8.1 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A provisioning script used for installing engineering workstations sets a single, hard‑coded VNC password. This flaw is a classic example of using hard‑coded credentials (CWE‑1392, CWE‑798). Because every workstation receives the same password, an attacker who obtains or guesses the credential can attach to the VNC service and gain remote control of the workstation, potentially accessing any data or executing commands on the machine.

Affected Systems

All engineering workstations built with ANDRITZ 250 SCALA or HIPASE‑250 that use the supplied provisioning script are affected. The CVE record does not specify individual firmware or software versions, so any model that relies on this script is considered vulnerable.

Risk and Exploitability

The CVSS score of 8.1 indicates a high impact vulnerability. The EPSS score of < 1% suggests a low probability of exploitation in the wild, and the vulnerability is not listed in the CISA KEV catalog. Nonetheless, an attacker with adjacent‑network access and knowledge of the hard‑coded credential can immediately gain VNC access, a clear remote attack vector inferred from the description.

Generated by OpenCVE AI on August 2, 2026 at 04:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor‑issued update that removes the hard‑coded VNC password from the provisioning script.
  • After provisioning, configure a unique VNC password for each workstation and store it securely.
  • Restrict VNC traffic to internal networks or block the VNC port from external access using firewall rules.

Generated by OpenCVE AI on August 2, 2026 at 04:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
Link Providers
https://www.andritz.com/ cve-icon cve-icon
History

Sun, 02 Aug 2026 21:00:00 +0000

Type Values Removed Values Added
First Time appeared Andritz
Andritz 250 Scala
Andritz hipase-250
Vendors & Products Andritz
Andritz 250 Scala
Andritz hipase-250

Fri, 31 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 31 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Description A provisioning script used when installing HIPASE-250 (formerly 250 SCALA) engineering workstations sets a fixed, hard-coded x11vnc password. Because the same credential is applied to every workstation provisioned this way, an attacker with adjacent-network access who knows the password can gain VNC access to affected workstations.
Title Use of hard-coded VNC credentials in the engineering-workstation provisioning
Weaknesses CWE-1392
CWE-798
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'}


Subscriptions

Andritz 250 Scala Hipase-250
cve-icon MITRE

Status: PUBLISHED

Assigner: CyberDanube

Published:

Updated: 2026-07-31T16:32:44.345Z

Reserved: 2026-07-21T20:33:52.962Z

Link: CVE-2026-65313

cve-icon Vulnrichment

Updated: 2026-07-31T16:32:40.136Z

cve-icon NVD

Status : Received

Published: 2026-07-31T09:16:59.090

Modified: 2026-07-31T17:16:34.970

Link: CVE-2026-65313

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-02T20:33:02Z

Weaknesses
  • CWE-1392

    Use of Default Credentials

  • CWE-798

    Use of Hard-coded Credentials