Direct naar de inhoud
⚡ Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 1 min 124 bronnen 3 kritiek 6 vandaag
CVE's Videos Dagbriefing

← Terug naar CVE-database

CVE-2025-1241

MEDIUM · 5.8 CVSS Gepubliceerd: CWE-326

Beschrijving NL

Versleutelde waarden in Fortra's GoAnywhere MFT voorafgaand aan versie 7.10.0 en GoAnywhere Agents voorafgaand aan versie 2.2.0 gebruiken een statische IV waarmee beheerders gegevens met brute kracht kunnen decoderen.

Origineel (Engels) tonen

Encrypted values in Fortra's GoAnywhere MFT prior to version 7.10.0 and GoAnywhere Agents prior to version 2.2.0 utilize a static IV which allows admin users to brute-force decryption of data.

Vendors

Fortra Apple Linux Microsoft

Affected products

Goanywhere Agents Goanywhere Managed File Transfer Macos Linux Kernel Windows

References