Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A hard-coded credentials vulnerability in osuuu LightPicture (versions up to 1.2.2) allows unauthenticated remote attackers to access protected API functions using credentials embedded in the application’s install file. The vendor has not responded to disclosure contact, meaning no official patch exists. Organizations running LightPicture for image hosting or management should treat this as an unpatched, publicly exploitable risk requiring immediate action.

Author

Tech Jacks Solutions