PatchSiren

sipcapture CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL sipcapture CVE published 2026-10-07

CVE-2026-62252

CVE-2026-62252 debrief based on CVE Program and NVD records. The vulnerability is a hardcoded default admin password 'sipcapture' with no forced change on first login in Homer deployments prior to version 11.0.283. This allows immediate administrative access to attackers who reach the login endpoint. Homer administrators and users should verify their deployment version, change the default password if stil [truncated]