Security Advisory

CVE-2026-50110

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-30 22:54:42
Last updated 2026-07-01 12:40:24
Assigner icscert
CVSS score 9.3
State PUBLISHED

Description

Storage Concentrator (SC & SCVM) contains hardcoded credentials for numerous internal services embedded within a configuration file. While the credentials are stored in an encoded format, the encoding can be reversed to plaintext. The exposed credentials span a broad range of internal services, including database accounts, licensing, replication services, and third-party integrations, meaning successful exploitation of this vulnerability could provide an attacker with unauthorized access to multiple interconnected systems.