The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304. An attacker with network access to this port can use weak hardcoded credentials to login to the FTP server and modify or read data, log files and gain remote code execution as NT Authority\SYSTEM on the server by exchanging accessible service binaries in the WorkExaminer installation directory (e.g. "C:\Program File (x86)\Work Examiner Professional Server").
References
History

Thu, 23 Oct 2025 10:30:00 +0000

Type Values Removed Values Added
First Time appeared Efficientlab
Efficientlab workexaminer Professional
Microsoft
Microsoft windows
Vendors & Products Efficientlab
Efficientlab workexaminer Professional
Microsoft
Microsoft windows

Wed, 22 Oct 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 21 Oct 2025 11:45:00 +0000

Type Values Removed Values Added
Description The WorkExaminer Professional server installation comes with an FTP server that is used to receive the client logs on TCP port 12304. An attacker with network access to this port can use weak hardcoded credentials to login to the FTP server and modify or read data, log files and gain remote code execution as NT Authority\SYSTEM on the server by exchanging accessible service binaries in the WorkExaminer installation directory (e.g. "C:\Program File (x86)\Work Examiner Professional Server").
Title Usage of Hardcoded FTP Credentials EfficientLab WorkExaminer Professional
Weaknesses CWE-798
References

cve-icon MITRE

Status: PUBLISHED

Assigner: SEC-VLab

Published: 2025-10-21T11:36:10.097Z

Updated: 2025-10-22T19:01:38.597Z

Reserved: 2025-09-17T14:05:15.138Z

Link: CVE-2025-10639

cve-icon Vulnrichment

Updated: 2025-10-22T19:01:29.522Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-21T12:15:34.770

Modified: 2025-10-22T19:15:32.473

Link: CVE-2025-10639

cve-icon Redhat

No data.