Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-10225

Опубликовано: 10 сент. 2025
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119) in the OpenSSL-based session module in AxxonSoft Axxon One (C-Werk) 2.0.6 and earlier on Windows allows a remote attacker under high load conditions to cause application crashes or unpredictable behavior via triggering memory reallocation errors when handling expired session keys.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:axxonsoft:axxon_one:*:*:*:*:*:windows:*:*
Версия до 2.0.6 (включая)

EPSS

Процентиль: 43%
0.00205
Низкий

7.5 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 7.5
github
5 месяцев назад

Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119) in the OpenSSL-based session module in AxxonSoft Axxon One 2.0.6 and earlier on Windows allows a remote attacker under high load conditions to cause application crashes or unpredictable behavior via triggering memory reallocation errors when handling expired session keys.

EPSS

Процентиль: 43%
0.00205
Низкий

7.5 High

CVSS3

Дефекты

CWE-119