Description
Use of default credentials in Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a remote attacker to gain administrative access to the management platform by logging in with default administrator credentials.
Published: 2026-08-21
Score: 9.3 Critical
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Datiphy Data Management Center versions 8.3.0 through 8.5.1 contain a flaw allowing the use of default administrator credentials. An attacker who can reach the web interface can log in as administrator when default credentials remain unchanged, thereby gaining full control over configuration, data, and potentially compromising all stored assets.

Affected Systems

The vulnerability affects Datiphy Inc.’s Data Management Center product, specifically releases from version 8.3.0 up to and including 8.5.1. No other versions or product variants are listed as impacted.

Risk and Exploitability

The CVSS score of 9.3 indicates high severity, and the absence of an EPSS score means the exploitation probability is not quantified but could be significant given the wide user base of these versions. The attack can typically be carried out remotely over the internet by entering default credentials at the login page; thus the vector is inferred as remote network access. The vulnerability is not currently listed in CISA’s KEV catalog, but its high score warrants proactive remediation.

Generated by OpenCVE AI on August 21, 2026 at 03:47 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update to a patched version of Data Management Center if one is available for your installation.
  • Immediately replace the default administrator username and password with strong, unique credentials.
  • Limit network exposure of the management interface by restricting access to trusted IP ranges and enabling multi‑factor authentication when supported.

Generated by OpenCVE AI on August 21, 2026 at 03:47 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
Link Providers
https://zuso.ai/advisory cve-icon cve-icon
History

Fri, 21 Aug 2026 02:00:00 +0000

Type Values Removed Values Added
Description Use of default credentials in Datiphy Data Management Center from v8.3.0 through v8.5.1 allows a remote attacker to gain administrative access to the management platform by logging in with default administrator credentials.
Title Datiphy Data Management Center - Use of Default Credentials
Weaknesses CWE-1392
References
Metrics cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: ZUSO ART

Published:

Updated: 2026-08-21T01:40:36.603Z

Reserved: 2026-08-19T08:03:53.871Z

Link: CVE-2026-76155

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-21T02:16:25.840

Modified: 2026-08-21T02:16:25.840

Link: CVE-2026-76155

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-21T04:00:13Z

Weaknesses