CVE-2025-34509 | Sitecore Experience Manager/Experience Platform 10.1.4/10.3.3/10.4.1 Administrative API hard-coded credentials (EUVD-2025-18524)
A vulnerability was found in Sitecore Experience Manager and Experience Platform 10.1.4/10.3.3/10.4.1. It has been classified as critical. This affects an unknown function of the component Administrative API. This manipulation causes hard-coded credentials.
This vulnerability appears as CVE-2025-34509. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.