Description

BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or series 5 prior to v9.0.166 use a default password that is guessable with knowledge of the device information. The latest release fixes this issue for new installations; users of old installations are encouraged to change all default passwords.

INFO

Published Date :

2026-02-12T16:34:18.821Z

Last Modified :

2026-02-12T18:45:20.986Z

Source :

icscert
AFFECTED PRODUCTS

The following products are affected by CVE-2025-54756 vulnerability.

Vendors Products
Brightsign
  • Brightsign Os Series 4 Players
  • Brightsign Os Series 5 Players

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact