216.73.217.22

CVE-2025-2311

· Published 20/03/2025 12:15 · Modified 21/03/2025 07:15

Labels: CVE-2025-2311 2025-03-20CVE-2025-2311CWE-319[email protected]

Essential information

Published
20/03/2025 12:15
Modified
21/03/2025 07:15
Author
Creator
CVSS
9.0 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CVSS metrics

Description

Incorrect Use of Privileged APIs, Cleartext Transmission of Sensitive Information, Insufficiently Protected Credentials vulnerability in Sechard Information Technologies SecHard allows Authentication Bypass, Interface Manipulation, Authentication Abuse, Harvesting Information via API Event Monitoring.This issue affects SecHard: before 3.3.0.20220411.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
nebula informatics / sechard cpe:2.3:a:nebula_informatics:sechard:<3.3.0.20220411:*:*:*:*:*:*:*

References