A vulnerability was found in syslink Avantra up to 25.2.x on Linux/Windows. It has been declared as problematic. The impacted element is an unknown function. The manipulation results in use of default password.

This vulnerability is identified as CVE-2026-8672. The attack is only possible with local access. There is not any exploit available.

It is recommended to upgrade the affected component.