CVE-2025-59103Patch

LOWCVSS 9.2 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The Access Manager 92xx in hardware revision K7 is based on Linux instead of Windows CE embedded in older hardware revisions. In this new hardware revision it was noticed that an SSH service is exposed on port 22. By analyzing the firmware of the devices, it was noticed that there are two users with hardcoded and weak passwords that can be used to access the devices via SSH. The passwords can be also guessed very easily. The password of at least one user is set to a random value after the first deployment, with the restriction that the password is only randomized if the configured date is prior to 2022. Therefore, under certain circumstances, the passwords are not randomized. For example, if the clock is never set on the device, the battery of the clock module has been changed, the Access Manager has been factory reset and has not received a time yet.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1391

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-01-27: 1Patch / Workaround · 2026-01-27: 1Technical Details · 2026-01-27: 101-27
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • CCB Alert@CCBalert
    Patch

    Warning: Multiple critical vulnerabilities in #dormakaba access manager #exos9300. #CVE-2025-59090 #CVE-2026-59097 #CVE-2026-59108 #CVE-2025-59103 CVSS: 9.3-9.2. See official advisories: https://www.dormakabagroup.com/en/security-advisories #Patch #Patch #Patch

    Post summary

    The post warns about multiple critical CVEs in Dormakaba Access Manager, provides CVE IDs and CVSS scores, and directs readers to official advisories for available patches.

    00001237
    7.2K followersView on X

Explore more