CVE-2021-40875 | Gurock TestRail 3.1.1.3130/5.3.0.3603/5.6.0.3853/7.1.2 Application /files.md5 hard-coded credentials (ID 164270 / EDB-50320)
A vulnerability classified as critical has been found in Gurock TestRail 3.1.1.3130/5.3.0.3603/5.6.0.3853/7.1.2. Affected is an unknown function of the file /files.md5 of the component Application Handler. The manipulation leads to hard-coded credentials.
This vulnerability is traded as CVE-2021-40875. The attack needs to be approached within the local network. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.