A vulnerability exists in the message queueing mechanism that if exploited can lead to the exposure of resources or functionality to unintended actors, possibly providing attackers with sensitive information or even execute arbitrary code.
The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.