PT-2026-82320 · Unknown · Super-Diamond-Server
CVE-2026-75329
·
Published
2026-08-26
·
Updated
2026-08-31
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
super-diamond-server versions prior to 1.3.4
Description
The Netty configuration distribution service on port 8283 lacks an authentication mechanism. This allows an attacker to retrieve the complete configuration of any project, which may include sensitive data such as database passwords and API keys, by sending a TCP request without credentials.
Recommendations
Update super-diamond-server to a version newer than 1.3.3.
Restrict access to port 8283 to minimize the risk of unauthorized configuration access.
Exploit
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Super-Diamond-Server