{"id":"CVE-2026-96587","published":"2026-09-29T21:19:39.987","lastModified":"2026-09-29T22:19:05.860","description":"The Viidure Android application embeds permanent, plaintext cloud storage credentials within its compiled code. These credentials provide full access to critical platform storage, including the ability to read, modify, or delete operational files such as firmware and application binaries.","cvssScore":10,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","cwes":["CWE-798"],"vendors":[],"products":[],"references":[{"url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-272-07.json","tags":[]},{"url":"https://viidure.app/","tags":[]},{"url":"https://www.cisa.gov/news-events/ics-advisories/icsa-26-272-07","tags":[]}],"exploitRefs":[{"url":"https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-272-07.json","tags":[]}],"hasPoc":true,"ai":{"summary":"The Viidure Android application hardcodes plaintext cloud storage credentials, allowing unauthorized access to critical storage.","exploitability":"Exploitation is straightforward once the application is installed, requiring no user interaction beyond installation.","blast_radius":"If exploited, attackers could fully compromise the device, accessing and modifying critical files.","remediation":"Disable the Viidure application or uninstall it from all affected devices.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["auth-bypass","plaintext","storage"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-30T08:44:42.375Z"}}