CVE-2025-31362
CVE-2025-31362
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3.7EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
11 Apr 2025Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Use of hard-coded cryptographic key issue exists in BizRobo! all versions. Credentials inside robot files may be obtained if the encryption key is available.
The vendor provides the workaround information and recommends to apply it to the deployment environment.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected products
OPEN, Inc. · BizRobo!Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →