Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update SmartIT Desktop Manager to version 11 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 04 Sep 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SmartIT Desktop Manager developed by Lightstar has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote attackers can obtain a specific password from the source code, which can be used to retrieve the AES encryption key used for communication. | |
| Title | Lightstar|SmartIT Desktop Manager - Use of Hard-coded Credentials | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-09-04T02:32:40.277Z
Reserved: 2026-09-03T10:00:25.047Z
Link: CVE-2026-85147
No data.
Status : Received
Published: 2026-09-04T03:17:45.920
Modified: 2026-09-04T03:17:45.920
Link: CVE-2026-85147
No data.
OpenCVE Enrichment
Updated: 2026-09-04T03:30:13Z