PatchSiren

Trac d.o.o. CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Trac d.o.o. CVE published 2026-06-01

CVE-2026-25600

A medium-severity vulnerability (CVSS 6.4) in the PDBM application involves a hard-coded cryptographic secret embedded in the PDBM.exe executable. This static secret is used by the application's encryption routines to decrypt credentials stored in the product's configuration file. Because the secret is identical across all installations, any attacker with sufficient local privileges can extract it from th [truncated]