top of page
perceptive_background_267k.jpg

Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Read Sensitive Cons…

Published:

4 augustus 2026 om 00:00:00

Alert date:

4 augustus 2026 om 13:01:30

Source:

nvd.nist.gov

Click to open the original link from this advisory

Enterprise Applications, Identity & Access

A hard-coded cryptographic key vulnerability has been identified in Bilin Software and Informatics Consultancy Inc.'s HUMANIST Digital Human Resources platform. The vulnerability allows attackers to read sensitive constants within the executable, potentially exposing cryptographic secrets. The flaw affects HUMANIST Digital Human Resources versions from 26.0 up to but not including 26.1. The issue is tracked as CVE-2026-14804 and was reported via the Turkish cybersecurity authority siberguvenlik.gov.tr. Hard-coded cryptographic keys pose a significant risk as they cannot be rotated without a software update. Organizations using the affected version should upgrade to version 26.1 or later to mitigate the risk.

Technical details

Mitigation steps:

Affected products:

HUMANIST Digital Human Resources 26.0

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page