CVE-2025-24525
Keysight Ixia Vision Product Family Use of Hard-coded Cryptographic Key
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 8.7EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
30 set 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
Keysight Ixia Vision has an issue with hardcoded cryptographic material
which may allow an attacker to intercept or decrypt payloads sent to the
device via API calls or user authentication if the end user does not
replace the TLS certificate that shipped with the device. Remediation is
available in Version 6.9.1, released on September 23, 2025.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Produtos afetados
Keysight · Ixia Vision Product FamilyQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →