CVE-2026-90456
Inventory Component Administrative Interface Exposed by Default Password
Halo Surface Signal: 3 out of 5 — possibly public-facing.
An inventory-management component is affected by a vulnerability where an example configuration file contains a fixed, publicly known administrative password. If this example file is copied into active configuration without regenerating credentials, the component's administrative interface may be exposed to unauthorize