The administrator account for the
Danelec MacGregor Voyage Data Recorder
web interface can directly edit sensitive files related to authentication, potentially changing the root password.
Metrics
Affected Vendors & Products
References
History
Fri, 29 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 29 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The administrator account for the Danelec MacGregor Voyage Data Recorder web interface can directly edit sensitive files related to authentication, potentially changing the root password. | |
| Title | MacGregor Voyage Data Recorder (VDR) G4e Files or Directories Accessible to External Parties | |
| Weaknesses | CWE-552 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-05-29T19:46:13.488Z
Reserved: 2026-05-07T16:55:26.137Z
Link: CVE-2026-40425
Updated: 2026-05-29T19:46:06.830Z
Status : Received
Published: 2026-05-29T19:16:23.673
Modified: 2026-05-29T19:16:23.673
Link: CVE-2026-40425
No data.
OpenCVE Enrichment
Updated: 2026-05-29T19:30:05Z