AMSS++ Authentication Bypass Vulnerability Allowing Unauthorized Administrative Access

Vulnerability

A vulnerability in AMSS++ version 4.7 allows for authentication bypass, enabling attackers to access administrative accounts using hardcoded credentials. The default admin username and password '1234' can be used to gain unauthorized administrative access to the system.

Impact

Exploitation of this vulnerability allows for unauthorized administrative access to the AMSS++ application.

Reproduction

To reproduce this vulnerability, log into the AMSS++ application using the default admin username and the password '1234'. This will grant unauthorized administrative access.

Added: Feb 7, 2026, 12:35 AM
Updated: Feb 7, 2026, 12:35 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
6.0
remediation
0.0
relevance
2.8
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.