CyberRota Analysis
AI-GeneratedThe SmartIT Desktop Manager by Lightstar contains a vulnerability that exposes hard-coded SFTP service credentials, allowing unauthenticated remote attackers to access the source code and potentially browse the file system of affected hosts. This could lead to unauthorized data access or manipulation. Organizations using this software should prioritize remediation to mitigate the risk of exploitation.
Original NVD Description
SmartIT Desktop Manager developed by Lightstar has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote attackers can obtain the SFTP service credentials of the SmartIT Agent application from the source code, thereby browsing the file system of the user's host.